diff options
Diffstat (limited to 'it.class')
-rw-r--r-- | it.class | 4 |
1 files changed, 2 insertions, 2 deletions
@@ -1168,8 +1168,8 @@ static function mod($a, $n) static function safe_filename($filename) { - if (it::match("\./", $filename)) - it::error(['to' => "mueller", 'title' => "fishy filename $filename"]); # FIXME 2018-08 UM should be fatal after test phase + if (it::match("\.\./", $filename)) + it::fatal(['title' => "../ contained in '$filename', aborted"]); return $filename; } |