Fix for path traversal vulnerabilities
What does this MR do?
prevents path traversal
Links to related issues
- #472 (closed) security audit
- added a test, or explain why one is not needed/possible...
- no unrelated changes
- asked someone for a code review
- joined #foodsharing-beta channel at https://slackin.yunity.org
- added an entry to CHANGELOG.md (description, merge request link, username(s))