Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Fix path manipulation coverity vulnerability issue #1099

Merged

Conversation

rajithkrishnegowda
Copy link
Collaborator

Fixing error: 656290 Filesystem path, filename, or URI manipulation

Coverity error

Screenshot 2024-10-24 at 11 01 46 AM

The log_file is validated using a regular expression that only allows word characters, hyphens, and dots. This prevents directory traversal and other unsafe characters.

@rajithkrishnegowda rajithkrishnegowda changed the title Fix Fix path manipulation coverity vulnerability issue Fix path manipulation coverity vulnerability issue Oct 24, 2024
@tanwarsh
Copy link
Collaborator

fix DCO.

@rahulga1 rahulga1 merged commit bdc6d15 into securefederatedai:develop Oct 25, 2024
27 checks passed
@rajithkrishnegowda rajithkrishnegowda deleted the fix-coverity-file-fix branch December 12, 2024 16:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

6 participants