From fdd21a59a8c0b89725fc91980da1ee3afce29361 Mon Sep 17 00:00:00 2001 From: tituspijean Date: Mon, 6 Apr 2020 10:41:51 +0200 Subject: [PATCH] [fix] path traversal --- conf/nginx.conf | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/conf/nginx.conf b/conf/nginx.conf index 3fc01c2..e59f30c 100644 --- a/conf/nginx.conf +++ b/conf/nginx.conf @@ -1,4 +1,5 @@ -location ^~ __PATH__ { +#sub_path_only rewrite ^__PATH__$ __PATH__/ permanent; +location __PATH__/ { if ($scheme = http) { rewrite ^ https://$server_name$request_uri? permanent;