diff options
author | Matthew Wild <mwild1@gmail.com> | 2016-01-07 15:37:47 +0000 |
---|---|---|
committer | Matthew Wild <mwild1@gmail.com> | 2016-01-07 15:37:47 +0000 |
commit | 78d296cfe9cc363e74aa33c21b38e6764377f9f6 (patch) | |
tree | 96462213eb1c7ba0cae399a7098652b4fbdd9a2b /util/xml.lua | |
parent | 25e96d193528ead16d0e8cbf9ae5ef34b04619d8 (diff) | |
download | prosody-78d296cfe9cc363e74aa33c21b38e6764377f9f6.tar.gz prosody-78d296cfe9cc363e74aa33c21b38e6764377f9f6.zip |
mod_http_files: Santize the path relative to our base URL before translating it to a filesystem path, fixes a relative path traversal vulnerability
Diffstat (limited to 'util/xml.lua')
0 files changed, 0 insertions, 0 deletions