Skip to content

SimpleHTTPServer accept serving symlinks that can allow accessing files/folder outside the path #31

@DEMON1A

Description

@DEMON1A

After reviewing the server. i noticed that the server reads the symlinks and serve them on the server according to the files inside of the path. serving symlinks isn't secure in this case that can result in security issues in some cases. in most applications symlinks is enabled according to the user options. if they need it. so creating a command -allow-symlink will be more secure in this case.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Status: CompletedNothing further to be done with this issue. Awaiting to be closed.Type: EnhancementMost issues will probably ask for additions or changes.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions