d30c57ab22
* Actually inspect the paths and prevent escape * Add integration tests * Generate zip files for use in integration test * Adjust error message
4 lines
164 B
YAML
4 lines
164 B
YAML
bugfixes:
|
|
- >
|
|
**security issue** win_unzip - normalize paths in archive to ensure extracted
|
|
files do not escape from the target directory (CVE-2020-1737)
|