Skip to content

[slack-22.0]: backupengine: disallow path traversals via backup MANIFEST on restore (#19470)#805

Merged
tanjinx merged 1 commit intoslack-22.0from
backport-PR#19470
Feb 27, 2026
Merged

[slack-22.0]: backupengine: disallow path traversals via backup MANIFEST on restore (#19470)#805
tanjinx merged 1 commit intoslack-22.0from
backport-PR#19470

Conversation

@rvrangel
Copy link

Description

backport of vitessio#19470

Related Issue(s)

Checklist

  • "Backport to:" labels have been added if this change should be back-ported to release branches
  • If this change is to be back-ported to previous releases, a justification is included in the PR description
  • Tests were added or are not required
  • Did the new or modified tests pass consistently locally and on CI?
  • Documentation was added or is not required

Deployment Notes

AI Disclosure

…tore (vitessio#19470)

Signed-off-by: Tim Vaillancourt <tim@timvaillancourt.com>
@rvrangel rvrangel requested a review from a team as a code owner February 26, 2026 13:31
@github-actions github-actions bot added this to the v22.0.3 milestone Feb 26, 2026
@rvrangel rvrangel changed the title backupengine: disallow path traversals via backup MANIFEST on restore (#19470) [slack-22.0]: backupengine: disallow path traversals via backup MANIFEST on restore (#19470) Feb 26, 2026
@codecov-commenter
Copy link

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 69.78%. Comparing base (b1ab347) to head (bab20f1).
⚠️ Report is 32 commits behind head on slack-22.0.

Additional details and impacted files
@@              Coverage Diff               @@
##           slack-22.0     #805      +/-   ##
==============================================
+ Coverage       67.53%   69.78%   +2.24%     
==============================================
  Files            1600     1605       +5     
  Lines          261782   214027   -47755     
==============================================
- Hits           176786   149349   -27437     
+ Misses          84996    64678   -20318     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@tanjinx tanjinx merged commit 88fca96 into slack-22.0 Feb 27, 2026
92 of 93 checks passed
@tanjinx tanjinx deleted the backport-PR#19470 branch February 27, 2026 01:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants