Skip to content

Commit adeb687

Browse files
authored
Merge pull request #671 from favicode/fix/path-traversal-in-create-snippet
Update Snippet fix
2 parents de452bb + cda4e4a commit adeb687

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

Diff for: Controller/Adminhtml/FastlyCdn/CustomSnippet/CreateCustomSnippet.php

+1-1
Original file line numberDiff line numberDiff line change
@@ -146,7 +146,7 @@ public function execute()
146146
$priority = $this->getRequest()->getParam('priority');
147147
$vcl = $this->getRequest()->getParam('vcl');
148148
$edit = $this->getRequest()->getParam('edit');
149-
$original = $this->getRequest()->getParam('original');
149+
$original = basename($this->getRequest()->getParam('original') ?? "");
150150
$validation = $this->config->validateCustomSnippet($name, $type, $priority);
151151
$error = $validation['error'];
152152
if ($error != null) {

0 commit comments

Comments
 (0)