Skip to content

Conversation

@itslenny
Copy link
Contributor

What kind of change does this PR introduce?

Bug fix

What is the current behavior?

Files outside of the storage path can be accessed when using the file backend

What is the new behavior?

Always ensure that file backend can never access files outside of the storage path

@coveralls
Copy link

Pull Request Test Coverage Report for Build 20528453065

Details

  • 7 of 34 (20.59%) changed or added relevant lines in 1 file are covered.
  • No unchanged relevant lines lost coverage.
  • Overall coverage decreased (-0.01%) to 76.051%

Changes Missing Coverage Covered Lines Changed/Added Lines %
src/storage/backend/file.ts 7 34 20.59%
Totals Coverage Status
Change from base Build 20337587279: -0.01%
Covered Lines: 25480
Relevant Lines: 33223

💛 - Coveralls

@itslenny itslenny merged commit 40ae729 into master Dec 30, 2025
2 checks passed
@itslenny itslenny deleted the fix/prevent-path-traversal-outside-of-storage-path branch December 30, 2025 18:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants