Skip to content

Commit 1ef233f

Browse files
aclark4lifeCopilot
andauthored
Update docs/handbook/security.rst
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
1 parent 74e07b5 commit 1ef233f

1 file changed

Lines changed: 3 additions & 2 deletions

File tree

docs/handbook/security.rst

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -226,8 +226,9 @@ The following mitigations are listed in priority order.
226226
advisories <https://github.com/python-pillow/Pillow/security/advisories>`_.
227227
5. **Enforce** ``MAX_IMAGE_PIXELS`` — never set it to ``None``; treat
228228
``Image.DecompressionBombWarning`` as an error.
229-
6. **Allowlist image formats** — unregister plugins your application does not
230-
need.
229+
6. **Allowlist image formats** — restrict accepted formats when opening
230+
images, for example with ``Image.open(..., formats=...)``, and isolate
231+
installs/environments if you need to minimise supported formats.
231232
7. **Strip metadata on output** — never pass through EXIF/XMP/ICC from user
232233
uploads to publicly served images.
233234
8. **Sanitise all metadata** returned by Pillow before using it downstream.

0 commit comments

Comments
 (0)