Hynek Schlawack added the comment: I feel like there should be a warning in Doc/library/xml.rst too.
Is there any actual reason why we don’t ship defusedxml with Python and add an easy way to monkeypatch so there’s as little passive barriers as possible to use XML “safely”? I’m sorry I didn’t speak up on when this was discussed on the ML but I found the discussion…depressing. ---------- assignee: -> docs@python components: +Documentation -Library (Lib), XML nosy: +docs@python, hynek type: -> security versions: +Python 3.3, Python 3.4 _______________________________________ Python tracker <rep...@bugs.python.org> <http://bugs.python.org/issue17538> _______________________________________ _______________________________________________ Python-bugs-list mailing list Unsubscribe: http://mail.python.org/mailman/options/python-bugs-list/archive%40mail-archive.com