- Add bypass check for 'content' field INSIDE isAPIEndpoint block - Prevents blocking of legitimate JavaScript/PHP code in replace-file API - Bypass list includes: content, fileContent, configData, rewriteRules, modSecRules - Security check still applies to other fields in API requests - Fixes: Replace-file API being blocked by security middleware |
||
|---|---|---|
| .. | ||
| SecurityLevel.py | ||
| __init__.py | ||
| secMiddleware.py | ||
| settings.py | ||
| urls.py | ||
| wsgi.py | ||