docs: update for simplified MIME detection (v1.5.1)
Some checks failed
CI / Lint & Format (push) Failing after 16s
CI / Unit Tests (push) Has been skipped
CI / Memory Leak Check (push) Has been skipped
CI / SBOM Generation (push) Has been skipped
CI / Security Scan (push) Successful in 19s
CI / Security Tests (push) Has been skipped
CI / Advanced Security Tests (push) Has been skipped
Some checks failed
CI / Lint & Format (push) Failing after 16s
CI / Unit Tests (push) Has been skipped
CI / Memory Leak Check (push) Has been skipped
CI / SBOM Generation (push) Has been skipped
CI / Security Scan (push) Successful in 19s
CI / Security Tests (push) Has been skipped
CI / Advanced Security Tests (push) Has been skipped
This commit is contained in:
@@ -328,14 +328,13 @@ DEDUP_MAX = 3 # Max duplicates allowed
|
||||
| X-Content-Type-Options | nosniff | Yes |
|
||||
| Content-Security-Policy | default-src 'none' | Yes |
|
||||
| X-Frame-Options | DENY | Yes |
|
||||
| Magic byte detection | First 16 bytes, 45 signatures | Yes |
|
||||
| MIME detection | UTF-8 validation (text/binary) | Yes |
|
||||
| Input sanitization | Werkzeug header handling | Yes |
|
||||
| SQL injection prevention | SQLAlchemy parameterized queries | Yes |
|
||||
| SSTI prevention | No user content in templates | Yes |
|
||||
| Path traversal prevention | ID validation regex | Yes |
|
||||
| Constant-time password check | PBKDF2 600k iterations | Yes |
|
||||
| Burn-after-read race condition | HEAD triggers deletion | Yes |
|
||||
| RIFF container detection | Subtype check (WEBP/AVI/WAVE) | Yes |
|
||||
| Clipboard command injection | Trusted path validation | Yes |
|
||||
| Memory exhaustion prevention | Max entries on all dicts | Yes |
|
||||
| Race condition protection | Threading locks on counters | Yes |
|
||||
|
||||
Reference in New Issue
Block a user