Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Sanitizing user input #5

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Sanitizing user input #5

wants to merge 1 commit into from

Conversation

birep
Copy link

@birep birep commented May 29, 2019

While it would be nice if we could trust people not to include example files on live servers, a google search will reveal many people are serving RelativePath.Example1.php, including anyone running a here-unnamed CMS which includes this file in a subdirectory of the webroot.

The proposed changes simply escape the user input, closing an xss vulnerability.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant