Skip to content

Conversation

marcelloraffaele
Copy link

No description provided.

Raffaele Marcello and others added 30 commits October 29, 2024 13:06
add codeQL analysis workflow
Bumps [rexml](https://github.com/ruby/rexml) from 3.3.6 to 3.3.9.
- [Release notes](https://github.com/ruby/rexml/releases)
- [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md)
- [Commits](ruby/rexml@v3.3.6...v3.3.9)

---
updated-dependencies:
- dependency-name: rexml
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <[email protected]>
marcelloraffaele and others added 15 commits October 30, 2024 12:12
Delete .github/workflows/codeql-analysis.yml
Create codeql.yml
…xtraction ("Zip Slip")

Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
Fix code scanning alert no. 2: Arbitrary file access during archive extraction ("Zip Slip")
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant