Skip to content

Validate and canonicalize Upload-Checksum value to prevent path traversal vulnerability#85

Merged
tomdesair merged 2 commits into
masterfrom
feature/checksum-validation
Jun 13, 2026
Merged

Validate and canonicalize Upload-Checksum value to prevent path traversal vulnerability#85
tomdesair merged 2 commits into
masterfrom
feature/checksum-validation

Conversation

@tomdesair

Copy link
Copy Markdown
Owner

This PR validates the value against a strict pattern to prevent potential path traversal vulnerabilities when the checksum value is written to disk.

@coveralls

Copy link
Copy Markdown

Coverage Status

coverage: 94.92% (+0.01%) from 94.91% — feature/checksum-validation into master

@tomdesair tomdesair merged commit 4f9c8fc into master Jun 13, 2026
13 checks passed
@tomdesair tomdesair deleted the feature/checksum-validation branch June 13, 2026 20:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants