scragg0x / realms-wiki

Git based wiki inspired by Gollum
http://realms.io
GNU General Public License v2.0
833 stars 91 forks source link

[Security] Sanitize filename before writing #198

Closed Freebien closed 7 years ago

Freebien commented 7 years ago

Hi,

Just figured out a security issue. I was able to write to any directory because of an unsanitized input.