janus-ssp / janus

Fully featured metadata registration administration module built on top of simpleSAMLphp.
Other
13 stars 8 forks source link

Ships insecure swfupload binaries #547

Closed thijskh closed 9 years ago

thijskh commented 9 years ago

Janus includes swfupload binaries for some reason. They are old and not maintained for security fixes.

There's a security-maintained version at https://github.com/WordPress/secure-swfupload. But rather I wonder why this is needed at all and would vastly prefer a flash-free Janus.