diff --git a/static.go b/static.go index aea41b0..20d60fa 100644 --- a/static.go +++ b/static.go @@ -29,11 +29,7 @@ type uiAssetsHandler struct { // serve the file specified by the URL path. func (h *uiAssetsHandler) ServeHTTP(w http.ResponseWriter, r *http.Request) { // Get the absolute path to prevent directory traversal. - path, err := filepath.Abs(r.URL.Path) - if err != nil { - http.Error(w, err.Error(), http.StatusBadRequest) - return - } + path := filepath.filepath.ToSlash(filepath.Clean(r.URL.Path)) // Get the path relative to the root path. if !strings.HasPrefix(path, h.rootPath) {