Watermelon914
dc64f47f98
Fixed a vulnerability introduced by the Request Music PR ( #75691 )
...
Admins can proccall the web_sound proc, completely bypassing the
shell_url_scrub done in other procs. Additionally, admins could just
directly modify the request URL stored in the request manager so that
it, again, bypasses the shell_url_scrub.
This PR just moves the shell scrubbing directly inside the proc, right
before the world.shelleo call, so that admins can't get around it with a
proccall.
2023-05-27 17:30:16 +00:00
..
2023-05-27 17:30:16 +00:00
2023-05-24 21:55:33 +12:00
2023-05-26 10:15:10 +00:00
2023-05-22 13:29:20 +00:00
2023-05-25 18:42:25 -06:00
2023-05-16 05:03:09 -07:00
2023-04-30 02:16:11 -07:00
2023-05-15 04:27:43 +00:00
2023-05-23 16:51:36 -06:00
2023-04-25 20:20:02 -06:00
2023-05-23 16:51:36 -06:00
2023-05-24 09:03:15 +12:00
2023-05-22 13:29:20 +00:00
2023-05-25 17:58:29 +00:00
2023-04-24 18:38:38 -06:00
2023-05-25 22:23:53 +01:00
2023-05-24 15:04:27 -04:00
2023-05-16 11:57:17 -06:00
2023-04-26 11:38:54 +12:00
2023-05-25 18:28:47 -06:00
2023-04-29 11:18:00 +00:00
2023-05-22 10:30:48 -06:00
2023-05-24 18:28:33 +00:00
2023-05-25 18:35:54 +00:00
2023-05-11 19:56:41 -06:00
2023-05-21 21:49:34 -06:00
2023-05-23 16:53:51 -06:00
2023-05-21 11:32:07 -07:00
2023-05-24 11:29:56 -07:00
2023-05-26 12:40:18 -06:00
2023-04-29 13:56:15 -07:00
2023-05-26 15:45:09 -07:00
2023-05-18 18:51:49 -06:00
2023-05-23 16:53:51 -06:00
2023-05-25 18:29:39 -06:00
2023-05-12 10:54:06 +00:00
2023-05-23 17:07:55 -06:00
2023-05-12 20:51:39 -06:00
2023-05-19 16:55:59 -05:00
2023-05-03 14:56:46 +00:00
2023-05-15 04:27:43 +00:00
2023-05-22 14:51:00 +12:00
2023-05-03 14:44:51 +00:00
2023-05-26 05:53:00 -07:00
2023-05-23 16:51:36 -06:00
2023-05-24 18:28:33 +00:00
2023-05-25 03:11:24 +00:00
2023-05-23 16:31:34 -06:00
2023-05-26 15:45:09 -07:00
2023-05-12 20:43:00 -06:00
2023-05-23 16:53:51 -06:00
2023-05-05 17:34:46 +01:00
2023-05-27 05:26:49 +00:00
2023-05-26 01:07:03 +00:00
2023-04-23 01:22:01 +00:00
2023-05-16 20:19:04 -06:00
2023-05-26 11:14:46 -07:00
2023-05-15 04:27:43 +00:00
2023-05-13 20:33:36 -04:00
2023-05-24 09:03:15 +12:00
2023-05-09 03:19:19 -07:00
2023-05-22 18:55:11 -06:00