Skip to content

Fix filemanager security breaches#11285

Merged
jolelievre merged 9 commits into
PrestaShop:1.7.4.xfrom
jolelievre:filemanager-fix-174
Nov 6, 2018
Merged

Fix filemanager security breaches#11285
jolelievre merged 9 commits into
PrestaShop:1.7.4.xfrom
jolelievre:filemanager-fix-174

Conversation

@jolelievre

@jolelievre jolelievre commented Nov 6, 2018

Copy link
Copy Markdown
Contributor
Questions Answers
Branch? 1.7.4.x
Description? Fix security breaches in TinyMCE filemanager plugin. Remove filemanager action image_size. Check mime type when uploading files. Fixed arbitrary image write/overwrite in Windows installation. Prevent image directory deletion.
Type? bug fix
Category? BO
BC breaks?
Deprecations?
Fixed ticket?
How to test?

This change is Reviewable

@prestonBot prestonBot added 1.7.4.x Bug Type: Bug labels Nov 6, 2018
@jolelievre jolelievre merged commit 76619b5 into PrestaShop:1.7.4.x Nov 6, 2018
@jolelievre jolelievre added this to the 1.7.4.4 milestone Nov 6, 2018
@jolelievre jolelievre deleted the filemanager-fix-174 branch November 27, 2018 11:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Bug Type: Bug

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants