Hi folks! =)
This problem has plagued me for a few months already and I can't seem to find any similar cases anywhere.
An attempt to install any update (core or modules) via Backdrop's own web interface results in error:
- Error installing / updating - File transfer failed, reason //var/www/example.com/modules/[module name] is outside of the /var/www/example.com
Here's a screenshot:

This error is present on every Backdrop instance I'm managing, regardless of environment. IIRC this error started showing when core updates via web UI were incorporated into Backdrop (v. 1.12.0).
I've tried:
- Fixing file permissions -> no effect
- Updating the core manually (to 1.12.6) and then updating module(s) via web UI -> no results
- Using different PHP versions (7.1 - 7.3) -> makes no difference
I've also tried installing fresh Backdrop 1.11.4 (last version before enabling core updates), manually installing old version of imagesloaded module, and then trying to update that. This leads to a HTTP 403 error:
Failed to download imagesloaded from https://github.com/backdrop-contrib/imagesloaded/releases/download/1.x-1.0.1/imagesloaded.zip
Core versions 1.12.0 and above download modules correctly but fail to install them.
The (test) server is running Debian 9.8, Apache 2.4.25, MariaDB 10.1.37 & PHP FPM. Apache user & group owns all files, PHP FPM has same users.
Does anybody have any idea what to try next? I'm out of ideas.
Recent comments
The inability to check for and install updates makes website development and maintenance extremely difficult. Managing over ten websites across two different hosting providers—one of which is...
Unable to run update - fails with Connection timed out
Thanks for the response, Herb! Since I posted that I did some more testing and have posted this issue https://github.com/backdrop-contrib/tfa_basic/issues/33 In fact, if both email...
TFA - how to setup fallback options 'per user'
I'll test this tomorrow to see if I can replicate the problem and report back. It's not "per user" so it should be working.
TFA - how to setup fallback options 'per user'
As I work through things I flush the caches after every change I make. As far as I can tell I have the custom module in the correct place (/modules/custom/fix_zero_search) and the file...
custom module not showing up in modules list
If you haven't already, flush all the caches. If it is in the modules folder whether directly or in a custom folder it will show up. If not, something else is wrong with your site; check...
custom module not showing up in modules list