Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request from GHSA-rm52-jx9h-rwcp
- Prevent removal of any plugin file from unauthenticated user - Prevent access to files outside plugins directories - Prevent access to files from inactive plugins - Limit access to images and fix content-type - Add changelog entry
- Loading branch information
1 parent
f021f1f
commit 6ca9a0e
Showing
2 changed files
with
12 additions
and
9 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters