@adob reported an issue that could have allowed an attacker to read arbitrary files on the servers used to generate GitHub Pages sites. We addressed the vulnerability by improving the file path sanitization that is done when generating a GitHub Pages site. We also performed an audit to ensure we were not using unsanitized file paths elsewhere in GitHub Pages.