Skip to content

Commit 97f77dc

Browse files
committed
updated filename_invalid function
1 parent 08c984b commit 97f77dc

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

Diff for: docassemble_base/docassemble/base/functions.py

+1-1
Original file line numberDiff line numberDiff line change
@@ -121,7 +121,7 @@ def __str__(self):
121121

122122

123123
def filename_invalid(filename):
124-
if '../' in filename:
124+
if '../' in filename or filename.startswith('/'):
125125
return True
126126
if re.search(r'[^A-Za-z0-9\_\.\-\/ ]', filename):
127127
return True

0 commit comments

Comments
 (0)