i do hope u guys are smart enough to uhh not use shell_exec for imagemagic or anything, or atleast give uploaded files a UID(which i can see is not done, except filtering spaces it seems)
It was good you mentioned UID because while I did want files to retain their original filenames, it does pose a couple of problems so the filenames are now UIDs