shuttlecraft icon indicating copy to clipboard operation
shuttlecraft copied to clipboard

Validate mimetype is sane

Open ringtailsoftware opened this issue 2 years ago • 0 comments

Currently, the attachments PR takes the mimetype "X/Y" and names files ".Y". We should validate that Y isn't something like "../" or "/etc/passwd"

ringtailsoftware avatar Dec 26 '22 15:12 ringtailsoftware