From 3babf77bb88c6dbd465e83b6da5946f273c890c1 Mon Sep 17 00:00:00 2001 From: Tristan Deloche Date: Sat, 1 May 2021 18:42:35 +0100 Subject: Additional PHP 8 sample config argument name changes --- config/default_php8.rules | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'config') diff --git a/config/default_php8.rules b/config/default_php8.rules index 427dcaf..893bfbc 100644 --- a/config/default_php8.rules +++ b/config/default_php8.rules @@ -35,7 +35,7 @@ sp.disable_xxe.enable(); sp.cookie.name("PHPSESSID").samesite("lax"); # Harden the `chmod` function -sp.disable_function.function("chmod").param("mode").value_r("^[0-9]{2}[67]$").drop(); +sp.disable_function.function("chmod").param("permissions").value_r("^[0-9]{2}[67]$").drop(); # Prevent various `mail`-related vulnerabilities sp.disable_function.function("mail").param("additional_parameters").value_r("\\-").drop(); -- cgit v1.3