Files
codeql/ruby/ql/lib/change-notes/released/0.2.3.md
2022-06-16 01:04:50 +00:00

247 B

0.2.3

Minor Analysis Improvements

  • Calls to Zip::File.open and Zip::File.new have been added as FileSystemAccess sinks. As a result queries like rb/path-injection now flag up cases where users may access arbitrary archive files.