diff --git a/src/Content/ContentManager.py b/src/Content/ContentManager.py index 12a9b638..7a1a8447 100644 --- a/src/Content/ContentManager.py +++ b/src/Content/ContentManager.py @@ -595,7 +595,7 @@ class ContentManager(object): return back def isValidRelativePath(self, relative_path): - if ".." in relative_path: + if ".." in relative_path.replace("\\", "/").split("/"): return False elif len(relative_path) > 255: return False