-
-
Notifications
You must be signed in to change notification settings - Fork 60
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Untrusted files inclusion, not guaranteed to load the right file #1344
Untrusted files inclusion, not guaranteed to load the right file #1344
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I could let the snoopy change slide by, but the other issues are show stoppers.
WOW!!! This is really embarrassing! And I have no idea how did it happen! |
OK, it's fixed now. Once again, thanks for looking into it! |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Thanks!
Replacing relative paths in the include/require statements with absolute paths based on the current directory by using DIR
it ensures that the file paths are resolved relative to the directory of the current file, rather than relying on the include path.