feat: add validation for chunk parameters in file upload function

master
SamHsu 2025-06-23 01:50:42 -07:00
parent 6d1f914058
commit 54722453ee
1 changed files with 4 additions and 0 deletions

View File

@ -1827,6 +1827,10 @@ function chunk($target_name)
$target_file = APP_ROOT . $config['path'] . 'cache/' . $target_name;
// 储存分片
if (!is_dir($temp_dir)) mkdir($temp_dir, 0755, true);
// 检查分片参数
if (!is_numeric($_REQUEST['chunk']) || !is_numeric($_REQUEST['chunks'])) {
die('Invalid input'); // or die('Invalid input');
}
// 移动缓存分片
move_uploaded_file($_FILES['file']['tmp_name'], $temp_dir . $_REQUEST['chunk']);
// 合并分片