searxngRebrandZaclys/docs/admin
Alex Balgavy 6b59800dc6 Fix security vulnerabilities in suggested nginx configuration
The suggested configurations for nginx found in the documentation and
templates lead to vulnerabilities allowing host spoofing [1] and path
traversal [2], as reported by Gixy [3]. This commit fixes those issues.

[1] https://github.com/yandex/gixy/blob/master/docs/en/plugins/hostspoofing.md
[2] https://github.com/yandex/gixy/blob/master/docs/en/plugins/aliastraversal.md
[3] https://github.com/yandex/gixy
2021-03-03 12:34:22 +01:00
..
engines Add recoll engine (#2325) 2020-11-30 08:35:15 +01:00
api.rst
arch_public.dot
architecture.rst
buildhosts.rst
engines.rst
filtron.rst
index.rst
installation-apache.rst
installation-docker.rst
installation-nginx.rst
installation-searx.rst
installation-uwsgi.rst
installation.rst
morty.rst
plugins.rst [mod] documentation: change the jinja context doesn't depend on searx.webapp 2020-12-27 10:00:35 +01:00
settings.rst
update-searx.rst