Skip to content

Commit

Permalink
[2.2.x] Refs #32718 -- Corrected CVE-2021-31542 release notes.
Browse files Browse the repository at this point in the history
Backport of d1f1417 from main.
  • Loading branch information
felixxm committed May 12, 2021
1 parent 88d9b28 commit 3ba089a
Showing 1 changed file with 1 addition and 2 deletions.
3 changes: 1 addition & 2 deletions docs/releases/2.2.21.txt
Original file line number Diff line number Diff line change
Expand Up @@ -13,5 +13,4 @@ CVE-2021-31542: Potential directory-traversal via uploaded files
directory-traversal via uploaded files with suitably crafted file names.

In order to mitigate this risk, stricter basename and path sanitation is now
applied. Specifically, empty file names and paths with dot segments will be
rejected.
applied.

0 comments on commit 3ba089a

Please sign in to comment.