On 08/04/12 14:31, Tom Boutell wrote:
> This is an attempt to protect people who have written inherently insecure 
> code anyway. One should never do a dynamic require to any untrusted location, 
> if ever at all, yes? 
>
Obviously.  But that include vulnerabilty seems a precondition to the
scenario Yasuo tries to protect.


-- 
PHP Internals - PHP Runtime Development Mailing List
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to