[issue42472] security hole in eval()

Christian Heimes report at bugs.python.org
Thu Nov 26 08:31:44 EST 2020


Christian Heimes <lists at cheimes.de> added the comment:

Your assumption is incorrect. The eval() does not promise that default builtins cannot be access through other means. The behavior has been discussed several times and at great length over the past decade.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue42472>
_______________________________________


More information about the Python-bugs-list mailing list