Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: check paths in an archive file before extracting #366

Merged
merged 1 commit into from
Jul 17, 2023

Commits on Jul 14, 2023

  1. fix: check paths in an archive file before extracting

    The paths in an archive file are checked for path traversal patterns before extraction. Also, Bandit v1.7.5 is producing false positives for request timeout arguments, which have been suppressed.
    
    Signed-off-by: behnazh-w <behnaz.hassanshahi@oracle.com>
    behnazh-w committed Jul 14, 2023
    Configuration menu
    Copy the full SHA
    d98cab1 View commit details
    Browse the repository at this point in the history