Security Advisories (1)
CVE-2017-16248 (2017-10-31)

The Catalyst-Plugin-Static-Simple module before 0.34 for Perl allows remote attackers to read arbitrary files if there is a '.' character anywhere in the pathname, which differs from the intended policy of allowing access only when the filename itself has a '.' character.

Changes for version 0.22 - 2009-08-21

  • Add tests for delivering empty files.
  • Fix those tests by depending on Catalyst-Runtime 5.80008.
  • Throw away compatibility code for older catalyst versions.
  • Fix docs to not include plugins in call to ->setup() (t0m)

Modules

Make serving static pages painless.