[TYPO3-core] RFC #11369: jumpUrl should only allow files matching fileDenyPattern

Rupert Germann rupi at gmx.li
Mon Jun 22 14:54:35 CEST 2009


Michael Stucki wrote:
>>> New patch is attached. +1 from me as well (just reading, no testing).

+1 by testing on all 4 versions.

tests done by re-enabling the ju hack and (unsuccessfully) trying to
download localconf.php and localconf.php~ wheras downloading
fileadmin/test.txt worked.

greets
rupert



More information about the TYPO3-team-core mailing list