
內容簡介
Lord of the Files: Enhanced Upload Security 外掛增強了 WordPress 的檔案上傳安全性,透過內容驗證和清理,確保上傳的檔案符合安全標準,降低潛在攻擊風險。
【主要功能】
• 強大的實際檔案類型檢測
• 完整的 MIME 別名對應
• SVG 檔案清理(如允許上傳)
• 檔案上傳驗證除錯工具
• 修正 WordPress 4.7.1 以來的 #40175 問題
• 修正模糊的媒體擴展 #40921
外掛標籤
開發者團隊
② 後台搜尋「Lord of the Files: Enhanced Upload Security」→ 直接安裝(推薦)
📦 歷史版本下載
原文外掛簡介
WordPress relies mostly on name-based validation when deciding whether or not to allow a particular file, leaving the door open for various kinds of attacks.
Lord of the Files adds to this content-based validation and sanitizing, making sure that files are what they say they are and safe for inclusion on your site.
The main features include:
Robust real filetype detection;
Full MIME alias mapping;
SVG sanitization (if SVG uploads have been independently allowed);
File upload validation debugger;
Fixes issues related to #40175 that have been present since WordPress 4.7.1.
Fixes ambiguous media extensions #40921
Requirements
WordPress 5.2 or later.
PHP 7.4 or later.
dom PHP extension.
fileinfo PHP extension.
mbstring PHP extension.
xml PHP extension.
Please note: it is not safe to run WordPress atop a version of PHP that has reached its End of Life. Future releases of this plugin might, out of necessity, drop support for old, unmaintained versions of PHP. To ensure you continue to receive plugin updates, bug fixes, and new features, just make sure PHP is kept up-to-date. 🙂
Privacy Policy
This plugin does not make use of or collect any “Personal Data”.
