Filename should end with extension
Not necessarily URI, this prevents accessing php script via /somefile.php/image.jpg
This commit is contained in:
parent
7d171f4453
commit
5d4afff97f
68
.htaccess
68
.htaccess
|
|
@ -29,40 +29,40 @@
|
|||
## White listed folders and files
|
||||
##
|
||||
RewriteCond %{REQUEST_FILENAME} -f
|
||||
RewriteCond %{REQUEST_URI} !\.js$
|
||||
RewriteCond %{REQUEST_URI} !\.map$
|
||||
RewriteCond %{REQUEST_URI} !\.ico$
|
||||
RewriteCond %{REQUEST_URI} !\.jpg$
|
||||
RewriteCond %{REQUEST_URI} !\.jpeg$
|
||||
RewriteCond %{REQUEST_URI} !\.bmp$
|
||||
RewriteCond %{REQUEST_URI} !\.png$
|
||||
RewriteCond %{REQUEST_URI} !\.gif$
|
||||
RewriteCond %{REQUEST_URI} !\.svg$
|
||||
RewriteCond %{REQUEST_URI} !\.css$
|
||||
RewriteCond %{REQUEST_URI} !\.less$
|
||||
RewriteCond %{REQUEST_URI} !\.scss$
|
||||
RewriteCond %{REQUEST_URI} !\.pdf$
|
||||
RewriteCond %{REQUEST_URI} !\.swf$
|
||||
RewriteCond %{REQUEST_URI} !\.txt$
|
||||
RewriteCond %{REQUEST_URI} !\.xml$
|
||||
RewriteCond %{REQUEST_URI} !\.xls$
|
||||
RewriteCond %{REQUEST_URI} !\.eot$
|
||||
RewriteCond %{REQUEST_URI} !\.woff$
|
||||
RewriteCond %{REQUEST_URI} !\.woff2$
|
||||
RewriteCond %{REQUEST_URI} !\.ttf$
|
||||
RewriteCond %{REQUEST_URI} !\.flv$
|
||||
RewriteCond %{REQUEST_URI} !\.wmv$
|
||||
RewriteCond %{REQUEST_URI} !\.mp3$
|
||||
RewriteCond %{REQUEST_URI} !\.ogg$
|
||||
RewriteCond %{REQUEST_URI} !\.wav$
|
||||
RewriteCond %{REQUEST_URI} !\.avi$
|
||||
RewriteCond %{REQUEST_URI} !\.mov$
|
||||
RewriteCond %{REQUEST_URI} !\.mp4$
|
||||
RewriteCond %{REQUEST_URI} !\.mpeg$
|
||||
RewriteCond %{REQUEST_URI} !\.webm$
|
||||
RewriteCond %{REQUEST_URI} !\.mkv$
|
||||
RewriteCond %{REQUEST_URI} !\.rar$
|
||||
RewriteCond %{REQUEST_URI} !\.zip$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.js$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.map$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.ico$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.jpg$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.jpeg$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.bmp$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.png$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.gif$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.svg$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.css$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.less$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.scss$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.pdf$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.swf$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.txt$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.xml$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.xls$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.eot$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.woff$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.woff2$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.ttf$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.flv$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.wmv$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.mp3$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.ogg$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.wav$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.avi$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.mov$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.mp4$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.mpeg$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.webm$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.mkv$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.rar$
|
||||
RewriteCond %{REQUEST_FILENAME} !\.zip$
|
||||
RewriteCond %{REQUEST_URI} !docs/.*
|
||||
RewriteCond %{REQUEST_URI} !themes/.*
|
||||
RewriteRule ^ index.php [L,NC]
|
||||
|
|
|
|||
Loading…
Reference in New Issue