Chris McDonough
2011-09-08 b1ba8cc4f3f388e092354ef72c37c03702edf5a4
refs
author Chris McDonough <chrism@plope.com>
Thursday, September 8, 2011 06:10 +0200
committer Chris McDonough <chrism@plope.com>
Thursday, September 8, 2011 06:10 +0200
commitb1ba8cc4f3f388e092354ef72c37c03702edf5a4
tree dbd5daccc42021f7c8dfc6c79dd3d1d0a06d9d24 tree | zip | gz
parent a3cd6b3ff1a02c5fad56cecb5178ca2ec77c3bfa view | diff
use set comparison to protect against insecure path elements; don't disallow items that start with dot; don't url-quote each path element
1 files modified
11 ■■■■ changed files
pyramid/static.py 11 ●●●● diff | view | raw | blame | history