From 74e213a534dbf2844c8cebeee7eb59ec70de306e Mon Sep 17 00:00:00 2001 From: KernelDeimos Date: Mon, 22 Apr 2024 23:54:03 -0400 Subject: [PATCH] fix(security): always use application/octet-stream --- packages/backend/src/routers/file.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/backend/src/routers/file.js b/packages/backend/src/routers/file.js index e53f661a..5fbd5ccc 100644 --- a/packages/backend/src/routers/file.js +++ b/packages/backend/src/routers/file.js @@ -96,7 +96,7 @@ router.get('/file', async (req, res, next)=>{ res.resource_owner = fsentry[0].user_id; // try to deduce content-type - const contentType = mime.contentType(fsentry[0].name) + const contentType = "application/octet-stream"; // update `accessed` db.write(