Documentation should warn about code injection from current working directory
Nobody has claimed this yet.
Assessment
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Newbie friendliness
- 35/100
- Issue type
- Documentation
- Clarity
- Mostly clear
- Activity status
- Stale
- Tech stack
- python
- Domain
- documentation, security
Research direction
No documentation file is named, so start by reading the migrated BPO issue 35971 and its nine-message thread to identify the intended documentation location and scope. Done means adding the requested warning about code injection from the current working directory and verifying the documentation change.
Written by the indexing model from the issue text.
Description
| BPO | 35971 |
|---|---|
| Nosy | @ronaldoussoren, @ncoghlan, @vstinner, @ericsnowcurrently, @tirkarthi |
Note: these values reflect the state of the issue at the time it was migrated and might not reflect the current state.
Show more details
GitHub fields:
assignee = None
closed_at = None
created_at = <Date 2019-02-11.21:46:00.516>
labels = ['type-security', '3.7', '3.8']
title = 'Documentation should warn about code injection from current working directory'
updated_at = <Date 2019-02-16.17:47:39.697>
user = 'https://bugs.python.org/GabrielCorona'
bugs.python.org fields:
activity = <Date 2019-02-16.17:47:39.697>
actor = 'ncoghlan'
assignee = 'none'
closed = False
closed_date = None
closer = None
components = []
creation = <Date 2019-02-11.21:46:00.516>
creator = 'Gabriel Corona'
dependencies = []
files = []
hgrepos = []
issue_num = 35971
keywords = []
message_count = 9.0
messages = ['335271', '335283', '335302', '335307', '335310', '335312', '335315', '335316', '335705']
nosy_count = 6.0
nosy_names = ['ronaldoussoren', 'ncoghlan', 'vstinner', 'eric.snow', 'Gabriel Corona', 'xtreak']
pr_nums = []
priority = 'normal'
resolution = None
stage = None
status = 'open'
superseder = None
type = 'security'
url = 'https://bugs.python.org/issue35971'
versions = ['Python 2.7', 'Python 3.4', 'Python 3.5', 'Python 3.6', 'Python 3.7', 'Python 3.8']
- Dominant language
- Python
- Stars
- 77.2k
- Forks
- 36k
- Avg merge
- 1d 9h
- Merged PRs (30d)
- 558
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from python/cpython
-
docs pending
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
-
stdlib type-feature
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
-
stdlib type-feature
Difficulty 2/5 1-3 hours Newbie friendliness 72/100
-
build type-bug
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
-
stdlib topic-email type-feature
Difficulty 2/5 1-3 hours Newbie friendliness 70/100
Similar issues
-
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 86/100
-
🐛 Bug 🔔 Pending processing
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
jumpserver/jumpserver#17584 ·