[jira] [Commented] (IO-556) Unexpected behavior of FileNameUtils.normalize may lead to limited path traversal vulnerabilies

2021-09-09 Thread Julius Davies (Jira)
[ https://issues.apache.org/jira/browse/IO-556?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17412783#comment-17412783 ] Julius Davies commented on IO-556: -- I adjusted the description just now:   s/FileNameUtils/FilenameUtils/g

[jira] [Commented] (IO-556) Unexpected behavior of FileNameUtils.normalize may lead to limited path traversal vulnerabilies

2021-09-09 Thread Julius Davies (Jira)
[ https://issues.apache.org/jira/browse/IO-556?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17412773#comment-17412773 ] Julius Davies commented on IO-556: -- [~jameshowe] - goes back to 1.1.   FilenameUtils not present in 1.0.  

[jira] [Commented] (IO-556) Unexpected behavior of FileNameUtils.normalize may lead to limited path traversal vulnerabilies

2021-04-21 Thread James Howe (Jira)
[ https://issues.apache.org/jira/browse/IO-556?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17326527#comment-17326527 ] James Howe commented on IO-556: --- Was ** 2.2 when this was introduced, or does it go back to 1.4 etc. as

[jira] [Commented] (IO-556) Unexpected behavior of FileNameUtils.normalize may lead to limited path traversal vulnerabilies

2020-03-11 Thread Sravan Putluru (Jira)
[ https://issues.apache.org/jira/browse/IO-556?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17057237#comment-17057237 ] Sravan Putluru commented on IO-556: --- Project uses *normalize()* to generated file path based on