projects
/
koha.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
(parent:
e52c242
)
Revert "Bug 14408 Path traversal vulnerability"
author
Fridolin Somers
<fridolin.somers@biblibre.com>
Thu, 25 Jun 2015 07:35:39 +0000 (09:35 +0200)
committer
Fridolin Somers
<fridolin.somers@biblibre.com>
Thu, 25 Jun 2015 07:35:39 +0000 (09:35 +0200)
This reverts commit
7c6ec195181b5cea3f108285f16afb1cd1654783
.
C4/Auth.pm
patch
|
blob
|
history
diff --git
a/C4/Auth.pm
b/C4/Auth.pm
index
59d1e31
..
164092d
100644
(file)
--- a/
C4/Auth.pm
+++ b/
C4/Auth.pm
@@
-139,10
+139,6
@@
sub get_template_and_user {
my $in = shift;
my ( $user, $cookie, $sessionID, $flags );
- # Sanitize template path to avoid path traversal
- $in->{template_name} =~ s|^/||;
- $in->{template_name} =~ s|\.\.||g;
-
$in->{'authnotrequired'} ||= 0;
my $template = C4::Templates::gettemplate(
$in->{'template_name'},