Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GE2QhC9X] Fix path traversal vulnerability (CVE-2022-23532) #3457

Merged
merged 2 commits into from Feb 21, 2023

Conversation

vga91
Copy link
Collaborator

@vga91 vga91 commented Feb 20, 2023

TODO - WAITING FOR BUMP 5.5.0 MERGE

Manual cherry-pick of neo4j/apoc@340573a

Only the test: core/src/test/java/apoc/export/ExportCoreSecurityTest.java,
since the implementation's fix is in common

@vga91 vga91 added to-cherry-pick issues related to commits to cherry-pick 5.5 labels Feb 20, 2023
@vga91 vga91 changed the base branch from dev to 5.5 February 20, 2023 11:43
@vga91 vga91 marked this pull request as draft February 20, 2023 13:34
@vga91 vga91 marked this pull request as ready for review February 21, 2023 09:07
@vga91 vga91 added the cherry-picked This PR has been cherry-picked to the other active branches label Feb 21, 2023
@vga91 vga91 merged commit 0a2f164 into 5.5 Feb 21, 2023
@vga91 vga91 deleted the dev-ext_export_security_fix branch February 21, 2023 09:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
5.5 cherry-picked This PR has been cherry-picked to the other active branches extended-functionality to-cherry-pick issues related to commits to cherry-pick
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant