diff --git a/.config/pmd/java/ruleset.xml b/.config/pmd/java/ruleset.xml index 4570323d..c72b66ad 100644 --- a/.config/pmd/java/ruleset.xml +++ b/.config/pmd/java/ruleset.xml @@ -316,6 +316,28 @@ + + + ZipEntry name should be sanitized. + Unsanitized names may contain '..' which can result in path traversal ("ZipSlip"). + + You can suppress this warning when you properly sanitized the name. + + 4 + + + + + + + + + com.puppycrawl.tools checkstyle - 12.0.0 + 12.0.1 @@ -298,7 +298,7 @@ org.apache.maven.plugins maven-pmd-plugin - 3.27.0 + 3.28.0 true true diff --git a/pom.xml b/pom.xml index ae7afe91..32e3e889 100644 --- a/pom.xml +++ b/pom.xml @@ -49,7 +49,7 @@ com.puppycrawl.tools checkstyle - 12.0.0 + 12.0.1 @@ -74,7 +74,7 @@ org.apache.maven.plugins maven-pmd-plugin - 3.27.0 + 3.28.0 true true