Peter Steinberger
3aa94afcfd
fix(security): harden archive extraction (#16203)
* fix(browser): confine upload paths for file chooser
* fix(browser): sanitize suggested download filenames
* chore(lint): avoid control regex in download sanitizer
* test(browser): cover absolute escape paths
* docs(browser): update upload example path
* refactor(browser): centralize upload path confinement
* fix(infra): harden tmp dir selection
* fix(security): harden archive extraction
* fix(infra): harden tar extraction filter
2026-02-14 14:42:08 +01:00
..
2026-01-31 15:04:03 -06:00
2026-01-31 15:04:03 -06:00
2026-02-06 10:00:08 -05:00
2026-02-06 22:28:44 -08:00
2026-02-14 14:42:08 +01:00
2026-02-06 10:00:08 -05:00
2026-02-02 02:26:11 -08:00
2026-01-31 15:04:03 -06:00
2026-01-31 15:04:03 -06:00
2026-02-06 22:28:44 -08:00
2026-02-01 15:37:19 -08:00
2026-01-31 15:04:03 -06:00
2026-02-07 22:08:41 -05:00
2026-02-06 10:00:08 -05:00
2026-02-07 15:40:35 -05:00
2026-02-07 15:40:35 -05:00
2026-02-14 14:07:14 +01:00
2026-01-31 15:04:03 -06:00
2026-01-31 15:04:03 -06:00
2026-02-07 15:40:35 -05:00
2026-02-09 23:58:52 -06:00
2026-02-09 11:50:53 -05:00
2026-02-05 16:07:51 -08:00
2026-02-13 22:18:16 -05:00