PluginProbe
LO

Lord of the Files: Enhanced Upload Security

v1.4.3

by Blobfolio

WordPress relies mostly on name-based validation when deciding whether or not to allow a particular file, leaving the door open for various kinds of attacks. Lord of the Files adds to this content-based validation and sanitizing, making sur...

1K+ active installs 5.0 (11 ratings) Requires PHP 7.4+ Requires WP 5.2+ Tested up to WP 7.1 Updated 2 weeks ago
Browse code Releases

About this plugin

WordPress relies mostly on name-based validation when deciding whether or not to allow a particular file, leaving the door open for various kinds of attacks. Lord of the Files adds to this content-based validation and sanitizing, making sure that files are what they say they are and safe for inclusion on your site. The main features include: Robust real filetype detection; Full MIME alias mapping; SVG sanitization (if SVG uploads have been independently allowed); File upload validation debugger; Fixes issues related to #40175 that have been present since WordPress 4.7.1. Fixes ambiguous media...

Read the full description on WordPress.org →

Read the source

v1.4.3

Browse every file in this release with syntax highlighting and a file tree, or link straight to a line. Older releases and trunk are available from the version switcher.