The fact
Attackers can exploit this flaw to access files outside the target directory during archive extraction.
This vulnerability potentially affects Maven and Gradle projects depending on plexus-utils.
Click the link to read an article on the topic: