This commit is contained in:
Tomas Mirchev 2025-06-26 20:19:19 +00:00
parent 252673a1d9
commit c1d50b4c7a

View File

@ -106,7 +106,8 @@ app.delete(
}
// Validate filename format (basic security check)
if (!filename.test(/^F_S\d+_T\d+_RV\d+\.md$/)) {
const pattern = /^F_S\d+_T\d+_RV\d+\.md$/;
if (!pattern.test(filename)) {
return res.status(400).json({ error: "Invalid filename format" });
}