I've recently been looking into the file upload field type, as well, and have come to the same conclusion. I think the security issues in the current file uploader field type are pretty serious, and have created an issue on the issue tracker regarding filtering you can follow.
File upload restrictions
Hi all, Apologies is this is answered elsewhere. Investigating the file upload option of contour and have a couple of questions:
are there any restrictions on what filetypes can be uploaded? (I dont think there are)
If not, how would you implement those restrictions?
Obviously allowing files to be uploaded has major security implications so I need to ensure it's done properly.
Any thoughts appreciated, Thanks, Matt
Hi Matt,
I've recently been looking into the file upload field type, as well, and have come to the same conclusion. I think the security issues in the current file uploader field type are pretty serious, and have created an issue on the issue tracker regarding filtering you can follow.
is working on a reply...