mirror of https://github.com/tailscale/tailscale/
drive: use secret token to authenticate access to file server on localhost
This prevents Mark-of-the-Web bypass attacks in case someone visits the localhost WebDAV server directly. Fixes tailscale/corp#19592 Signed-off-by: Percy Wegmann <percy@tailscale.com>pull/11956/head
parent
b839a1bb6c
commit
541cdd7267
Loading…
Reference in New Issue