Skip to content
This repository was archived by the owner on Aug 7, 2025. It is now read-only.
This repository was archived by the owner on Aug 7, 2025. It is now read-only.

Block readable access to .htaccess files #399

@conf-test

Description

@conf-test

Hi,

I'm a security researcher. Thank you for providing this useful clearlinux/wordpress docker image!
After I set it up, I found your docker has the configuration files .htaccess exposed to end-users.

It's recommended to restrict access to .htaccess files here.
As they may expose sensitive configuration information to attackers, would it be better to block them from public access?

Thanks!

Best,
-ct

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions