From fc99f296b39af6ae825a2f0bbdf35463d88884fb Mon Sep 17 00:00:00 2001 From: Andrew Shu Date: Thu, 11 Jul 2013 17:56:41 -0400 Subject: [PATCH] Fixed filename sanitization: allow numbers when saving via text editor --- app.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app.rb b/app.rb index 68d50dcf..0fb7e2f5 100644 --- a/app.rb +++ b/app.rb @@ -295,7 +295,7 @@ post '/site_files/save/:filename' do |filename| tmpfile.write input tmpfile.close - sanitized_filename = filename.gsub(/[^a-zA-Z_\-.]/, '') + sanitized_filename = filename.gsub(/[^a-zA-Z0-9_\-.]/, '') dest_path = File.join site_base_path(current_site.username), sanitized_filename FileUtils.mv tmpfile.path, dest_path