summaryrefslogtreecommitdiff
path: root/config.json
diff options
context:
space:
mode:
authorSerge Bazanski2021-12-27 21:28:23 +0100
committerstuebinm2022-01-02 01:55:49 +0100
commit0a7b2a3181f0626b697f95cc18b9c3286305fdca (patch)
treeb165159f1d94a2031015a35b0a34611b24897d3c /config.json
parentec1ea19d54b3ff01aaf5b1e864fba670c0f01b7a (diff)
SECURITY: Fix path traversal in script verification
The following used to be allowed: scripts: https://static.rc3.world/scripts/../maps/81c8add623eea2704f20/e65b545e-342f-4be0-b369-c0eacff7b15d/re-blessed.mp3.js This is obviously not good, as it allows scripts from arbitrary maps.
Diffstat (limited to 'config.json')
0 files changed, 0 insertions, 0 deletions