[issue7950] subprocess.Popen documentation should contain a good warning about the security implications when using shell=True

Christoph Neuroth report at bugs.python.org
Thu Feb 18 15:05:46 CET 2010


Christoph Neuroth <christoph.neuroth at googlemail.com> added the comment:

You're right, that has been improved in regard to how you can do it instead. However, I still think it lacks to mention the security risk involved - compare this to e.g. os.tempnam(), which has a warning in a red box.

----------
status: closed -> open

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue7950>
_______________________________________


More information about the Python-bugs-list mailing list