Hynek Schlawack added the comment:

I feel like there should be a warning in Doc/library/xml.rst too.

Is there any actual reason why we don’t ship defusedxml with Python and add an 
easy way to monkeypatch so there’s as little passive barriers as possible to 
use XML “safely”?

I’m sorry I didn’t speak up on when this was discussed on the ML but I found 
the discussion…depressing.

----------
assignee:  -> docs@python
components: +Documentation -Library (Lib), XML
nosy: +docs@python, hynek
type:  -> security
versions: +Python 3.3, Python 3.4

_______________________________________
Python tracker <rep...@bugs.python.org>
<http://bugs.python.org/issue17538>
_______________________________________
_______________________________________________
Python-bugs-list mailing list
Unsubscribe: 
http://mail.python.org/mailman/options/python-bugs-list/archive%40mail-archive.com

Reply via email to