top | item 46250629

(no title)

bsamuels | 2 months ago

dont unzip an untrusted payload

discuss

order

cogman10|2 months ago

Unless you are worried about something like a gzip bomb, I don't see why this is an issue. A lot of formats are effectively just zips. The xlsx, odf, etc for example. It's a pretty common format style.

It helps to have a well defined expected structure in the archive.