On Mon, Nov 7, 2011 at 5:12 PM, Steve Meyers <[email protected]> wrote:
> Yes, but we're still operating under the assumption that security doesn't
> matter

...you may be, but I'm not.  In fact, that's exactly what my email was
for: to warn people about the dangers of importing arbitrary values
into their namespace.  It's obviously a security risk if you stop and
think about it in those terms, but a lot of programmers (especially
new ones) don't think of things that way.

-Dan

_______________________________________________

UPHPU mailing list
[email protected]
http://uphpu.org/mailman/listinfo/uphpu
IRC: #uphpu on irc.freenode.net

Reply via email to