You are not alone @James_Robertson advocated for attention to that here Files Handling Security Issue
Also on the security topic (that I know of) these may interest you -