Drupal 7.24: .htaccess modifications for private and temp folders
23 Nov, 2013 Stephan 2 Comments

To prevent code execution it is recommended to modify the .htaccess files for the files folder, private files folder, and tmp folder. The location for these are defined in admin/config/media/file-system. According to SA-CORE-2013-003 the .htaccess contents for the files folder should read: