Browse Source

Improve static resource path check

pull/1155/head
Rossen Stoyanchev 10 years ago
parent
commit
269742589b
  1. 2
      spring-webmvc/src/main/java/org/springframework/web/servlet/resource/ResourceHttpRequestHandler.java

2
spring-webmvc/src/main/java/org/springframework/web/servlet/resource/ResourceHttpRequestHandler.java

@ -371,7 +371,7 @@ public class ResourceHttpRequestHandler extends WebContentGenerator @@ -371,7 +371,7 @@ public class ResourceHttpRequestHandler extends WebContentGenerator
return true;
}
}
if (path.contains("../")) {
if (path.contains("..")) {
path = StringUtils.cleanPath(path);
if (path.contains("../")) {
if (logger.isTraceEnabled()) {

Loading…
Cancel
Save