mirror of
https://github.com/Stirling-Tools/Stirling-PDF.git
synced 2024-09-28 23:51:56 +02:00
Sanitized user-provided file names in HTTP multipart uploads
This commit is contained in:
parent
4af58118c9
commit
4e937a6024
@ -68,7 +68,7 @@ public class ShowJavascript {
|
|||||||
|
|
||||||
if (script.isEmpty()) {
|
if (script.isEmpty()) {
|
||||||
script =
|
script =
|
||||||
"PDF '" + inputFile.getOriginalFilename() + "' does not contain Javascript";
|
"PDF '" + Filenames.toSimpleFileName(inputFile.getOriginalFilename()) + "' does not contain Javascript";
|
||||||
}
|
}
|
||||||
|
|
||||||
return WebResponseUtils.bytesToWebResponse(
|
return WebResponseUtils.bytesToWebResponse(
|
||||||
|
Loading…
Reference in New Issue
Block a user