Current implementation is too permissive. The goal of this task is the improve security by limiting file types/extensions and locations where uploads can be made (whitelisting)