Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Prevent XXE attacks #1624

Merged
merged 1 commit into from
Nov 28, 2015
Merged

Prevent XXE attacks #1624

merged 1 commit into from
Nov 28, 2015

Conversation

akrabat
Copy link
Member

@akrabat akrabat commented Nov 28, 2015

Disable the libxml entity loader so that arbitary files cannot be read via XML input.

Fixes #1623

Disable the libxml entity loader so that arbitary files cannot be read
via XML input.
@akrabat akrabat merged commit ebb5143 into slimphp:3.x Nov 28, 2015
akrabat added a commit that referenced this pull request Nov 28, 2015
@akrabat akrabat added the Slim 3 label Nov 28, 2015
@akrabat akrabat added this to the 3.0.0 RC3 milestone Nov 28, 2015
@akrabat akrabat mentioned this pull request Nov 28, 2015
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant