On Thu, Mar 5, 2009 at 12:46, Michael Baierl mail@mbaierl.com wrote:
But guys, the security part of this is out of the scope of RC I think... If the user sends something bogus by playing with the extension, who cares? There are so many ways to do that without RC. Okay, we should try helping SPAM and VIRUS filters, but this is their task IMHO.
The problem might just be that the server itself is at risk depending on what happens....
What risk do you mean? The doesn't touch these files (except fileinfo).
~Thomas _______________________________________________ List info: http://lists.roundcube.net/dev/