Skip to content

Use yaml.safe_load()

Emanuele Aina requested to merge wip/em/yaml-safe-load into master

PyYAML.load() can create arbitrary Python objects, a malicious actor could exploit this to run arbitrary code.

Merge request reports