webbrowser module + urls ending in .py = a security hole?

olsongt at verizon.net olsongt at verizon.net
Mon Jan 30 17:06:25 EST 2006


Http protocol give the content-type in the http headers, so the
originating server determines how your browser is going to handle it,
not the client browser.  I think the problem is that the 'file://'
protocol probably does use the registry keys above since it's not
getting any HTTP headers.




More information about the Python-list mailing list