Georg Brandl added the comment: * I would take out the "erroneous" of "erroneous or maliciously constructed" in the disclaimers. The odds of creating one of the "bombings" by chance are slim.
* The names of attacks in the table are quite opaque if you haven't heard of them. They should be linked/explained. (Also, the csv-table construction looks quite strange; a normal reST table would be preferred.) * I don't think the warning for SAX needs to be repeated three times. * Not sure the reader will get the reason for having both "defusedxml" and "defusedexpat". ---------- _______________________________________ Python tracker <rep...@bugs.python.org> <http://bugs.python.org/issue17538> _______________________________________ _______________________________________________ Python-bugs-list mailing list Unsubscribe: http://mail.python.org/mailman/options/python-bugs-list/archive%40mail-archive.com