Bug #67245
closed
Prevent information disclosure in file list
Added by Nicole Cordes over 9 years ago.
Updated about 7 years ago.
Category:
File Abstraction Layer (FAL)
Description
Currently the doc header title shows the full path to a folder even if you are in a mount point.
- Status changed from New to Under Review
Patch set 1 for branch master of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at http://review.typo3.org/39898
- Target version changed from 7.3 (Packages) to 7.4 (Backend)
Patch set 2 for branch master of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at http://review.typo3.org/39898
- Status changed from Under Review to Resolved
- % Done changed from 0 to 100
- Status changed from Resolved to Under Review
Patch set 1 for branch TYPO3_6-2 of project Packages/TYPO3.CMS has been pushed to the review server.
It is available at http://review.typo3.org/42588
- Status changed from Under Review to Resolved
This change broke a project of ours: User with only limited access to files (through mountpoints) cannot use the file list anymore. When clicking a folder, TYPO3 runs into a memory leak and only serves a white page. Reverting the patch brings back normal behaviour.
- Status changed from Resolved to Closed
Also available in: Atom
PDF