First security bug related to f-strings

Irmen de Jong irmen.NOSPAM at xs4all.nl
Sat Nov 5 13:33:16 EDT 2016


On 5-11-2016 18:12, Steve D'Aprano wrote:
> Well, that didn't take very long at all.
> 
> Here's the first security bug which is related to the new (and badly
> misnamed) f-string feature:
> 
> http://bugs.python.org/issue28563


I think perhaps we should have a command line option / environment variable to be able
to disable 'eval' altogether....

Irmen




More information about the Python-list mailing list