grove icon indicating copy to clipboard operation
grove copied to clipboard

Resolve simlinks in paths to serve

Open alexander-bauer opened this issue 12 years ago • 0 comments

This creates a potential, but extremely unlikely, security/functionality problem if the user points grove at a simlink. If the simlink is of a different length than the real path, it could grant visitors access to globally readable repositories outside of Grove's scope under a set of extremely weird and not-well-defined circumstances.

alexander-bauer avatar Apr 26 '13 03:04 alexander-bauer