On 08/04/12 14:31, Tom Boutell wrote: > This is an attempt to protect people who have written inherently insecure > code anyway. One should never do a dynamic require to any untrusted location, > if ever at all, yes? > Obviously. But that include vulnerabilty seems a precondition to the scenario Yasuo tries to protect.
-- PHP Internals - PHP Runtime Development Mailing List To unsubscribe, visit: http://www.php.net/unsub.php