Re: CURL file posting
From: Stas Malyshev Date: Sun, 11 Mar 2012 23:29:45 +0000 Subject: Re: CURL file posting References: 1 2 3 Groups: php.internals Request: Send a blank email to [email protected] to get a copy of this message
Hi!I'd sure like a PHP extension that didn't have this obvious and nasty bug: https://bugs.php.net/bug.php?id=46439This doesn't look good. Documentation does say the @ prefix exists, but it has very high potential of creating security holes for unsuspecting people. open_basedir would help limit the impact, but still it's not a good thing. Any ideas on fixing it without breaking the BC? -- Stanislav Malyshev, Software Architect SugarCRM: http://www.sugarcrm.com/ (408)454-6900 ext. 227
Thread (29 messages)
« previous | php.internals (#58849) | next » |
---|