Tag: security-misconfiguration

File extension validation

Checks if the extension of a file uploaded by a user is validated before the file is saved.

File and directory information exposure

Allowing hidden files while serving files from a given root directory can cause information leakage.