Security Advisories (2)
CVE-2012-5572 (2014-05-30)

CRLF injection vulnerability in the cookie method allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a cookie name.

CVE-2011-1589 (2011-04-05)

Directory traversal vulnerability (Mojolicious report, but Dancer was vulnerable as well).

NAME

Dancer::Request::Upload - handles file uploads requests

DESCRIPTION

This class implements a representation of file uploads for Dancer. These objects are accesible within route handlers via the request->uploads keyword. See Dancer::Request for details.

METHODS

filename

Returns the filename as sent by the client.

basename

Returns basename for "filename".

Creates a hard link to the temporary file. Returns true for success, false for failure.

$upload->link_to('/path/to/target');
file_handle

Returns a read-only file handle on the temporary file.

content

Returns a scalar containing the contents of the temporary file.

copy_to

Copies the temporary file using File::Copy. Returns true for success, false for failure.

$upload->copy_to('/path/to/targe')

AUTHORS

This module as been writen by Alexis Sukrieh, heavily based on Plack::Request::Upload. Kudos to Plack authors.

SEE ALSO

Dancer