Simple and effective multi-format Web API Server to host your PHP API as Pragmatic REST and/or RESTful API
GNU Lesser General Public License v2.1
1.36k
stars
315
forks
source link
Secure getsource.php do not allow to list content of files outside public/examples #588
Closed
tmotyl closed 6 years ago
the getsource.php is not secure enough, and allows to list content of arbitrary files if restler is placed in the webroot.
see https://github.com/AOEpeople/TYPO3_Restler/issues/25