Skip to content

fix: archive zip slip & uninstaller path validation#916

Open
jacobprezant wants to merge 2 commits intoopa334:mainfrom
jacobprezant:main
Open

fix: archive zip slip & uninstaller path validation#916
jacobprezant wants to merge 2 commits intoopa334:mainfrom
jacobprezant:main

Conversation

@jacobprezant
Copy link

This PR adds an archive path guard to reject a path traversal. It also fixes uninstall path validation to enforce container prefix or minimum depth to avoid unintended deletion.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants