Hayden
13850cda1f
security: multiple reported CVE fixes (#1515)
* update out of date license
* update typing / refactor
* fix arbitrarty path injection
* use markdown sanatizer to prevent XSS CWE-79
* fix CWE-918 SSRF by validating url and mime type
* add security docs
* update recipe-scrapers
* resolve DOS from arbitrary url
* update changelog
* bump version
* add ref to #1506
* add #1511 to changelog
* use requests decoder
* actually fix encoding issue
2022-07-31 13:10:20 -08:00
..
2022-07-09 20:28:34 -08:00
2022-06-05 11:28:38 -08:00
2022-05-11 17:14:03 -08:00
2022-02-13 12:23:42 -09:00
2022-02-13 12:23:42 -09:00
2022-07-31 11:39:35 -08:00
2022-03-22 21:08:06 -08:00
2022-05-21 11:22:02 -08:00
2022-06-25 11:39:38 -08:00
2022-05-25 09:38:21 -08:00
2022-05-11 17:14:03 -08:00
2022-01-08 21:15:23 -09:00
2022-06-25 11:39:38 -08:00
2022-02-23 15:04:45 -09:00
2022-01-08 21:15:23 -09:00
2022-05-29 17:34:41 -08:00
2022-07-31 13:10:20 -08:00
2022-07-31 13:10:20 -08:00
2022-01-16 15:24:24 -09:00
2022-07-31 13:10:20 -08:00
2022-06-25 12:19:04 -08:00
2022-06-03 20:12:32 -08:00
2022-06-09 08:50:03 -08:00
2022-06-03 20:12:32 -08:00
2022-07-31 13:10:20 -08:00
2022-01-08 21:15:23 -09:00
2022-06-19 10:27:32 -08:00
2022-03-29 09:38:23 -08:00
2022-01-08 21:15:23 -09:00
2022-02-26 14:00:55 -09:00
2022-03-17 10:30:10 -08:00