Skip to content

fix: clean zip entry paths before extraction#13

Merged
fernandofatech merged 1 commit into
mainfrom
fix/codeql-zip-entry-cleaning
May 16, 2026
Merged

fix: clean zip entry paths before extraction#13
fernandofatech merged 1 commit into
mainfrom
fix/codeql-zip-entry-cleaning

Conversation

@fernandofatech
Copy link
Copy Markdown
Owner

Summary\n- normalizes zip entry names before joining cache paths\n- rejects absolute and parent-directory archive entries\n- reinforces CodeQL Zip Slip remediation\n\n## Validation\n- HOME=$(mktemp -d) go test ./cmd/awsdac-mcp-server ./internal/...

@vercel
Copy link
Copy Markdown

vercel Bot commented May 16, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
diagram-as-code Ready Ready Preview, Comment, Open in v0 May 16, 2026 2:37am

@fernandofatech fernandofatech merged commit 0a76955 into main May 16, 2026
11 checks passed
@fernandofatech fernandofatech deleted the fix/codeql-zip-entry-cleaning branch May 16, 2026 02:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant