kittoframework / kitto

Kitto is a framework for interactive dashboards written in Elixir
http://kitto.io/dashboards/sample
MIT License
956 stars 58 forks source link

Asserts that requested template is in the templates directory #103

Closed davejlong closed 7 years ago

davejlong commented 7 years ago

Closes a remote file read vulnerability where a user could break out of the templates directory and read other files on the host.