Skip to content

[Config] Fix default DownloadPath in ConfigSettings #9464

@jeffersoncasimir

Description

@jeffersoncasimir

The %LORISROOT% variable is being used as the default DownloadPath, which can be a potential a security vulnerability if unchanged.

https://github.com/aces/Loris/blob/4860adfa212a3301baed2b9e775e099abec01b7b/SQL/0000-00-03-ConfigTables.sql#L214C1-L214C109

PR to be sent to 26.

Metadata

Metadata

Assignees

Labels

Category: BugPR or issue that aims to report or fix a bugCategory: SecurityPR or issue that aims to improve securityPriority: HighPR or issue should be prioritised over others for review and testing

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions