8affddc52d
Fixes the following things: 1. Sanitizes log output to prevent an attacker from using a specially crafted POST to add extra lines to the log 2. Simplify a regular expression since "..file" cannot be used to escape the current directory 3. Makes sure directories are consistent 4. Correct logic issues in misc/cronjobs/backup.sh Thanks to Frere Sebastien Marie for catching these issues. Signed-off-by: Robin Sheat <robin@catalyst.net.nz> Signed-off-by: Paul Poulain <paul.poulain@biblibre.com> |
||
---|---|---|
.. | ||
apache-shared-disable.conf | ||
apache-shared-intranet.conf | ||
apache-shared-opac.conf | ||
apache-shared.conf | ||
apache-site.conf.in | ||
koha-conf-site.xml.in | ||
SIPconfig.xml | ||
zebra-authorities-dom-site.cfg.in | ||
zebra-authorities-site.cfg.in | ||
zebra-biblios-dom-site.cfg.in | ||
zebra-biblios-site.cfg.in | ||
zebra.passwd.in |