Willem van den Ende 6887ae4087 Security: Validate blog controller inputs (page param, blog ID)
Ran a claude /security-review, fixed two vulnerabilities

  Use a plug to resolve blog_id, returning a clean 404 for unknown blogs
  instead of raising with inspect(). Parse page param with Integer.parse
  so invalid values (non-numeric, negative, zero) fall back to page 1
  instead of crashing. Add 5 tests covering these cases.a
2026-03-17 12:17:29 +00:00
2026-03-17 11:17:21 +00:00
Description
personal blogging platform.
MIT 419 KiB
Languages
Elixir 87.6%
CSS 4.3%
HTML 3.1%
Dockerfile 2.1%
JavaScript 2%
Other 0.9%