api, browse: Ensure to sanitize filename passed to django FileResponse
Django might try to access the file if the value provided to the filename
query parameter of associated views is an absolute path.
anlambert | Authored on Dec 7 2022, 5:53 PM |
anlambert | Pushed on Dec 8 2022, 5:20 PM |
Buildable 33197 | |
Build 52045: test-and-build | Jenkins console · Jenkins |