diff --git a/root/etc/cont-init.d/50-config b/root/etc/cont-init.d/50-config index 1f936dd..ec9f69c 100644 --- a/root/etc/cont-init.d/50-config +++ b/root/etc/cont-init.d/50-config @@ -110,7 +110,7 @@ if ! grep -q '#Removed lua' /config/nginx/nginx.conf; then fi # patch authelia-server.conf for CVE-2021-32637 -if ! grep -q "if (\$request_uri ~" /config/nginx/authelia-server.conf; then +if ! grep -q 'if ($request_uri ~' /config/nginx/authelia-server.conf; then sed -i '/internal;/a \ \ \ \ if ($request_uri ~ [^a-zA-Z0-9_+-=\\!@$%&*?~.:#'\''\\;\\(\\)\\[\\]]) { return 401; }' /config/nginx/authelia-server.conf fi