Skip to content

Fix/zip slip vulnerability 2#3

Open
OscarRP15 wants to merge 4 commits into
mainfrom
fix/zip-slip-vulnerability-2
Open

Fix/zip slip vulnerability 2#3
OscarRP15 wants to merge 4 commits into
mainfrom
fix/zip-slip-vulnerability-2

Conversation

@OscarRP15
Copy link
Copy Markdown
Owner

Thank you for submitting a pull request to the WebGoat!

- Validate canonical path of each ZIP entry before extraction
- Skip entries that resolve outside the target directory
- Handle directory entries and parent directory creation
- Validate canonical path of each ZIP entry before extraction
- Skip entries that resolve outside the target directory
- Handle directory entries and parent directory creation
@sonarqubecloud
Copy link
Copy Markdown

Quality Gate Failed Quality Gate failed

Failed conditions
0.0% Coverage on New Code (required ≥ 80%)
B Maintainability Rating on New Code (required ≥ A)

See analysis details on SonarQube Cloud

Catch issues before they fail your Quality Gate with our IDE extension SonarQube for IDE

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant