From d2a1a72fbb7a231c0bb1e38adc753d33d1c6c18c Mon Sep 17 00:00:00 2001 From: Safihre Date: Thu, 18 Feb 2016 10:29:00 +0100 Subject: [PATCH] Filegrabber did not sanatize filename --- sabnzbd/urlgrabber.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/sabnzbd/urlgrabber.py b/sabnzbd/urlgrabber.py index 3dd444b..8eaf35c 100644 --- a/sabnzbd/urlgrabber.py +++ b/sabnzbd/urlgrabber.py @@ -201,6 +201,9 @@ class URLGrabber(Thread): data = fn.read() fn.close() + # Sanatize filename first + filename = misc.sanitize_filename(filename) + # Write data to temp file path = os.path.join(cfg.admin_dir.get_path(), FUTURE_Q_FOLDER) path = os.path.join(path, filename)