Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> The mere concept of a "document root" is a problem though and a major footgun if you don't know what you're doing.

A non issue though after 2-3 days of working with this approach. All modern PHP frameworks have a so called front controller (an index.php file) that loads what it requires from ../ after, ideally, properly validating the request to avoid issues.



> A non issue though after 2-3 days of working with this approach.

Tell that to all the people with bleeding feet.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: