Skip to content
This repository has been archived by the owner on Mar 7, 2019. It is now read-only.

Relative paths that go up do not work #9

Open
kgiszewski opened this issue Apr 10, 2015 · 0 comments
Open

Relative paths that go up do not work #9

kgiszewski opened this issue Apr 10, 2015 · 0 comments

Comments

@kgiszewski
Copy link
Owner

This is a purposeful thing at the moment to keep things secure.

i.e. any relative paths with ../../ type syntax are disallowed due to the security ramifications.

Without the protection, a user could do something like ../../../web.config and see sensitive items.

There are already checks in place to only fetch .md and media (.jpg, .png, .pdf) etc. So maybe we can find a nice way to allow these types of paths.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant