Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

The Symfony2 framework config should not expose app_dev.php #56

Open
stof opened this issue Nov 6, 2013 · 0 comments
Open

The Symfony2 framework config should not expose app_dev.php #56

stof opened this issue Nov 6, 2013 · 0 comments

Comments

@stof
Copy link
Collaborator

stof commented Nov 6, 2013

Exposing app_dev.php is a security issue as it allows accessing debugging information on the app (there is some IP restriction by default in the file, but it means that either the file is useless if you kept it or insecure if you removed it)

winmillwill pushed a commit to winmillwill/heroku-buildpack-php that referenced this issue Sep 8, 2014
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant