Commit 8aab3cc0 authored by Bernd Zeimetz's avatar Bernd Zeimetz
Browse files

mgr/dashboard: fix improper URL checking

This change disables up-level references beyond the HTTP base directory.
[CVE-2020-1699]
Upstream commit 0443e40c11280ba3b7efcba61522afa70c4f8158

Closes: #949206
Thanks: Salvatore Bonaccorso
parent 720ba42b
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment