[wp-trac] Re: [WordPress Trac] #2591: users can enter dangerous
serialized strings
WordPress Trac
wp-trac at lists.automattic.com
Thu Mar 23 10:05:10 GMT 2006
#2591: users can enter dangerous serialized strings
-----------------------+----------------------------------------------------
Id: 2591 | Status: new
Component: Security | Modified: Thu Mar 23 10:05:10 2006
Severity: normal | Milestone: 2.1
Priority: normal | Version: 2.0.2
Owner: anonymous | Reporter: random
-----------------------+----------------------------------------------------
Comment (by davidhouse):
We should probably get smart and maintain a list of what can be
unserialised and what is just plain text. No untrusted data should ever be
unserialised.
--
Ticket URL: <http://trac.wordpress.org/ticket/2591>
WordPress Trac <http://wordpress.org/>
WordPress blogging software
More information about the wp-trac
mailing list