diff --git a/roles/wordpress-setup/templates/wordpress-site.conf.j2 b/roles/wordpress-setup/templates/wordpress-site.conf.j2 index 93e55511ee..b9fd7205ca 100644 --- a/roles/wordpress-setup/templates/wordpress-site.conf.j2 +++ b/roles/wordpress-setup/templates/wordpress-site.conf.j2 @@ -121,6 +121,13 @@ server { deny all; } {% endblock %} + + {% block blade_twig_templates -%} + # Prevent Blade and Twig templates from being accessed directly. + location ~* \.(blade\.php|twig)$ { + deny all; + } + {% endblock %} {% block location_primary -%} location / {