On 18.04.2011, at 23:09, Andrej Pavlovic wrote:

> 
> > Please configure your editor differently, this can cause serious
> > security issues like you said with misconfigured web servers (of which
> > plenty exist).
> 
> Wouldn't a misconfigured server display content of .yml files and as a result 
> expose sensitive configuration settings anyway?

Exactly, which I mentioned in my initial post.

regards,
Lukas Kahwe Smith
m...@pooteeweet.org



-- 
If you want to report a vulnerability issue on symfony, please send it to 
security at symfony-project.com

You received this message because you are subscribed to the Google
Groups "symfony developers" group.
To post to this group, send email to symfony-devs@googlegroups.com
To unsubscribe from this group, send email to
symfony-devs+unsubscr...@googlegroups.com
For more options, visit this group at
http://groups.google.com/group/symfony-devs?hl=en

Reply via email to