Actions
Bug #19969
closedDon't allow directory traversal through plugin URL
Status:
Released
Priority:
N/A
Assignee:
Category:
Plugins integration
Target version:
Effort required:
Priority:
0
Regression:
Description
Currently the plugin are downloaded to the temporary location:
/var/rudder/tmp/plugins/https://download.rudder.io/plugins/./7.0/consul/release/rudder-plugin-consul-7.0.0~beta1-2.0.rpkg
which allows directory traversal.
Actions