Commit graph

3 commits

Author SHA1 Message Date
9f270c12b4 Profile pictures are now handled by the application to mitigate possible directory traversals
to other sub-directories of the static directory (Admins/Staff with the right to edit user
accounts were able to set a path like ../static/favicon.png for the profile picture - this
isn't a "i'm in, now i have root access and can hack your mom"-vulnerability, but better fix
it before it evolves to one. or a dragon. it's too late for this crap.)
2022-11-02 22:53:04 +01:00
fb50140762 Add script and configure environment to install python dependencies into a project subfolder 2022-03-16 18:58:27 +01:00
c49798a9ea Initial commit - existing project files 2022-03-16 12:11:30 +01:00