mirror of
https://github.com/YunoHost/package_linter.git
synced 2024-09-03 20:06:12 +02:00
ident fix (due to merge) ((really this time))
This commit is contained in:
parent
8154a86f4c
commit
d3609c6b6a
1 changed files with 16 additions and 16 deletions
|
@ -1575,22 +1575,22 @@ class Configurations(TestSuite):
|
|||
yield Warning("Can't open/read %s: %s" % (os.path.join(path, filename), e))
|
||||
return
|
||||
|
||||
for number, line in enumerate(content.split("\n"), 1):
|
||||
comment = ("#", "//", ";", "/**", "*")
|
||||
if (
|
||||
( "0.0.0.0" in line or "::" in line )
|
||||
and not line.strip().startswith(comment)
|
||||
):
|
||||
for ip in re.split("[ \t,='\"(){}\[\]]", line):
|
||||
if ip == "::" or ip.startswith("0.0.0.0"):
|
||||
yield Info(
|
||||
f"{os.path.relpath(path, app.path)}/{filename}:{number}: "
|
||||
"Binding to '0.0.0.0' or '::' can result in a security issue "
|
||||
"as the reverse proxy and the SSO can be bypassed by knowing "
|
||||
"a public IP (typically an IPv6) and the app port. "
|
||||
"Please be sure that this behavior is intentional. "
|
||||
"Maybe use '127.0.0.1' or '::1' instead."
|
||||
)
|
||||
for number, line in enumerate(content.split("\n"), 1):
|
||||
comment = ("#", "//", ";", "/**", "*")
|
||||
if (
|
||||
( "0.0.0.0" in line or "::" in line )
|
||||
and not line.strip().startswith(comment)
|
||||
):
|
||||
for ip in re.split("[ \t,='\"(){}\[\]]", line):
|
||||
if ip == "::" or ip.startswith("0.0.0.0"):
|
||||
yield Info(
|
||||
f"{os.path.relpath(path, app.path)}/{filename}:{number}: "
|
||||
"Binding to '0.0.0.0' or '::' can result in a security issue "
|
||||
"as the reverse proxy and the SSO can be bypassed by knowing "
|
||||
"a public IP (typically an IPv6) and the app port. "
|
||||
"Please be sure that this behavior is intentional. "
|
||||
"Maybe use '127.0.0.1' or '::1' instead."
|
||||
)
|
||||
|
||||
#############################################
|
||||
# __ __ _ __ _ #
|
||||
|
|
Loading…
Reference in a new issue