diff options
author | Matthew Wild <mwild1@gmail.com> | 2016-01-07 15:37:47 +0000 |
---|---|---|
committer | Matthew Wild <mwild1@gmail.com> | 2016-01-07 15:37:47 +0000 |
commit | b7ed261e7dfd367f3bc5a8bef654b91ba74feb97 (patch) | |
tree | 96462213eb1c7ba0cae399a7098652b4fbdd9a2b /util/xml.lua | |
parent | 79ad494b8e1452f0702bb4c5caa6ab6a2ff5b813 (diff) | |
download | prosody-b7ed261e7dfd367f3bc5a8bef654b91ba74feb97.tar.gz prosody-b7ed261e7dfd367f3bc5a8bef654b91ba74feb97.zip |
mod_http_files: Santize the path relative to our base URL before translating it to a filesystem path, fixes a relative path traversal vulnerability
Diffstat (limited to 'util/xml.lua')
0 files changed, 0 insertions, 0 deletions