Andrey Antukh
c4dd04353f
🐛 Sanitize SVG files on upload to prevent XSS
...
Add sanitize-svg function that removes dangerous elements and attributes:
- script tags
- foreignObject elements
- Event handler attributes (onload, onmouseover, etc.)
- javascript: URLs from href/xlink:href attributes
Apply sanitization in process-main-image before storing SVG files.
AI-assisted-by: mimo-v2.5-pro
2026-08-05 21:52:59 +02:00
..
2026-05-10 09:16:41 +02:00
2026-07-20 11:48:26 +02:00
2026-08-05 17:40:58 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-07-31 12:04:10 +02:00
2026-07-22 13:11:57 +02:00
2026-08-05 17:44:01 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-07-31 12:06:19 +02:00
2026-05-29 11:24:58 +02:00
2026-06-02 09:33:02 +02:00
2026-08-05 09:41:48 +02:00
2026-05-29 11:24:58 +02:00
2026-08-05 21:52:59 +02:00
2026-07-31 13:19:45 +02:00
2026-07-30 07:32:02 +02:00
2026-08-05 17:37:27 +02:00
2026-07-30 07:32:02 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-08-05 17:35:59 +02:00
2026-05-29 11:24:58 +02:00
2026-08-05 17:52:14 +02:00
2026-06-15 13:04:19 +02:00
2026-08-05 09:41:48 +02:00
2026-08-03 17:23:55 +02:00
2026-06-03 14:08:10 +02:00
2026-08-05 09:41:48 +02:00
2026-08-03 17:23:55 +02:00
2026-08-03 17:23:55 +02:00
2026-08-04 12:44:25 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-08-05 17:53:15 +02:00
2026-06-01 12:57:39 +02:00
2026-08-05 17:42:49 +02:00
2026-07-09 19:34:15 +02:00
2026-08-05 09:41:48 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-05-29 11:24:58 +02:00
2026-06-01 12:57:39 +02:00