Commit f382fb44 authored by omega8cc's avatar omega8cc Committed by anarcat

Issue #1197182 - fix for Nginx config - allow the alert word in the URL.

parent 42c39b1f
......@@ -230,7 +230,7 @@
###
### deny listed requests for security reasons without 403 response
###
location ~* (?:delete.+from|insert.+into|select.+from|union.+select|onload|\.php.+src|system\(.+|iframe|document\.cookie|alert|\;|\.\.) {
location ~* (?:delete.+from|insert.+into|select.+from|union.+select|onload|\.php.+src|system\(.+|iframe|document\.cookie|\;|\.\.) {
return 444;
}
......
......@@ -216,7 +216,7 @@
###
### deny listed requests for security reasons without 403 response
###
location ~* (?:delete.+from|insert.+into|select.+from|union.+select|onload|\.php.+src|system\(.+|iframe|document\.cookie|alert|\;|\.\.) {
location ~* (?:delete.+from|insert.+into|select.+from|union.+select|onload|\.php.+src|system\(.+|iframe|document\.cookie|\;|\.\.) {
return 444;
}
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment