Skip to content

Commit 056fa71

Browse files
authored
add change notes
1 parent b078430 commit 056fa71

File tree

1 file changed

+5
-0
lines changed
  • ruby/ql/lib/change-notes/released

1 file changed

+5
-0
lines changed
Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
## 0.2.3
2+
3+
### Minor Analysis Improvements
4+
5+
- Calls to `Zip::File.open` and `Zip::File.new` have been added as `FileSystemAccess` sinks. As a result queries like `rb/path-injection` now flag up cases where users may access arbitrary archive files.

0 commit comments

Comments
 (0)