diffoscope before 77 writes to arbitrary locations on disk based on the contents of an untrusted archive.
"https://github.com/pypa/advisory-database/blob/main/vulns/diffoscope/PYSEC-2018-83.yaml"