Skip to content

core: sanitize tar paths and reject symlinks in incremental snapshot extraction#3574

Merged
allformless merged 1 commit into
developfrom
fix/tar-path-traversal-incr-snapshot
Feb 26, 2026
Merged

core: sanitize tar paths and reject symlinks in incremental snapshot extraction#3574
allformless merged 1 commit into
developfrom
fix/tar-path-traversal-incr-snapshot

Conversation

@MatusKysel

Copy link
Copy Markdown
Contributor

Description

add a description of your changes here...

Rationale

tell us why we need these changes...

Example

add an example CLI or API response...

Changes

Notable changes:

  • add each change in a bullet point here
  • ...

@allformless allformless requested a review from sysvm February 25, 2026 08:45
@MatusKysel MatusKysel force-pushed the fix/tar-path-traversal-incr-snapshot branch from 7fa9c15 to c2d41c6 Compare February 25, 2026 08:48
@allformless allformless merged commit badb553 into develop Feb 26, 2026
0 of 8 checks passed
@allformless allformless added this to the 1.7.1 milestone Mar 3, 2026
@MatusKysel MatusKysel deleted the fix/tar-path-traversal-incr-snapshot branch March 4, 2026 19:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants