• Welcome to the Chevereto User Community!

    Here, users from all over the world come together to learn, share, and collaborate on everything related to Chevereto. It's a place to exchange ideas, ask questions, and help improve the software.

    Please keep in mind:

    • This community is user-driven. Always be polite and respectful to others.
    • Support development by purchasing a Chevereto license, which also gives you priority support.
    • Go further by joining the Community Subscription for even faster response times and to help sustain this space
  • Chevereto Support CLST

    Support response

    Support checklist

    • Got a Something went wrong message? Read this guide and provide the actual error. Do not skip this.
    • Confirm that the server meets the System Requirements
    • Check for any available Hotfix - your issue could be already reported/fixed
    • Read documentation - It will be required to Debug and understand Errors for a faster support response

Random URL redirecting to valid one (V4.3.6)

Mapasteper

Chevereto Noob
Hi. I recently installed chevereto version 4.3.6 on my server and then I realized that if I try random url, I get redirected to the right one (disclosing private link albums)
If I try www.myserver.com/album/xx (random url) I get redirected to a valid album url
 
Hello,

If /album/xx resolves to some existing id (decoded) then it will display the content unless there's a privacy setting affecting that visibility. That's expected behavior.

If you want to make all albums private you need to alter the global website privacy mode.
 
Thanks for your reply Rodolfo.
What I mean is this: I currently have 3 albums. 1 is public and 2 private(link).
if I put a random url at /album/0x /album/d7 /album/xy /album/yz (none of those url are valid albums url)
Chevereto redirect to a valid one (even private links one) which is not good at all. This is definitely a not expected behavior.
 
I can't reproduce that on the demo website. I never added a method to redirect to a valid album URL on not found, this is very odd.

Can you show us a video, or a working POC.
 
Back
Top