Discourse Meta
Möglicher Verzeichnis-Traversal: /uploads/* erlaubt dateiübergreifenden Dateizugriff
Unterstützung
Moin
8. Juli 2025 um 10:42
2
Maybe you are interested in the
secure-uploads
feature.
3 „Gefällt mir“
Beitrag im Thema anzeigen
Verwandte Themen
Thema
Antworten
Aufrufe
Aktivität
Potential resource exhaustion: No rate limiting on /uploads.json allows mass file uploads
Support
uploads
0
33
8. Juli 2025
Personal Message attachments accessible to unauthenticated users (missing auth check)
Support
secure-uploads
,
personal-messages
1
48
8. Juli 2025
Does anyone have some suggestions how should I go about investigating Discourse losing old uploads?
Support
0
18
4. Juli 2024
Understanding Uploads, Images, and Attachments
Site Management
explanation
,
file-managment
5
5191
15. Januar 2025
Secure Uploads
Announcements
secure-uploads
46
16502
24. Juli 2025