Cockatrice/cockatrice/src
BruebachL 2632f8a040
[Client/Server] Keep non-deck files out of the deck storage (#7352)
The local deck and replay browsers list every file in the folder, so a
stray file (e.g. a PNG screenshot of a deck) can be parsed as a garbage
plaintext deck, opened in the editor, and uploaded. The server also
accepts oversized deck payloads with only silent truncation.

Hide files that are not in a supported deck/replay format in the two
QFileSystemModel views (directories stay visible), skip them when opening,
reject them when uploading, and make the server reject deck uploads larger
than MAX_FILE_LENGTH instead of truncating them.

Co-authored-by: Lukas Brübach <Bruebach.Lukas@bdosecurity.de>
2026-09-27 21:32:49 +02:00
..
client [Tests] Add manual picture loader benchmark against the real card hosts (#7288) 2026-09-21 18:30:04 +02:00
database/interface [Settings] Split cache_settings monolith into multiple SettingsManager sub-classes (#7050) 2026-07-27 11:25:39 +02:00
filters [Card] Add a setting for the language used in card search (#7314) 2026-09-21 08:50:48 +02:00
game [Game] Preserve hand card order when restoring connection (#7266) 2026-09-07 08:21:44 +02:00
game_graphics [Game] Make 'Put top cards on stack until...' history case-sensitive (#7358) 2026-09-27 09:50:05 +02:00
interface [Client/Server] Keep non-deck files out of the deck storage (#7352) 2026-09-27 21:32:49 +02:00
main.cpp [DeckShare] Open shared decks via links with a gated preview flow (#7244) 2026-09-20 20:22:17 +02:00
main.h Standardize Doxygen documentation (#6885) 2026-05-21 22:58:07 +02:00
single_instance_manager.cpp [DeckShare] Open shared decks via links with a gated preview flow (#7244) 2026-09-20 20:22:17 +02:00
single_instance_manager.h [DeckShare] Open shared decks via links with a gated preview flow (#7244) 2026-09-20 20:22:17 +02:00