rspec/rules/S6096/common/fix/code-rationale.adoc
2023-03-02 18:07:54 +01:00

1 line
247 B
Plaintext

The following code is vulnerable to Zip Slip as it is constructing a path using an archive entry name. This path is then used to copy a file without being validated first. Therefore, it can be leveraged by an attacker to overwrite arbitrary files.