[Zope-Checkins] CVS: Zope/doc - CHANGES.txt:1.535.2.156
Tres Seaver
tseaver at zope.com
Thu Jan 8 15:38:46 EST 2004
Update of /cvs-repository/Zope/doc
In directory cvs.zope.org:/tmp/cvs-serv1752/doc
Modified Files:
Tag: Zope-2_6-branch
CHANGES.txt
Log Message:
- XML-RPC marshalling of class instances used the instance
__dict__ to marshal the object, and could include attributes
prefixed with an underscore name. These attributes are considered
private in Zope and should generally not be disclosed.
=== Zope/doc/CHANGES.txt 1.535.2.155 => 1.535.2.156 ===
--- Zope/doc/CHANGES.txt:1.535.2.155 Thu Jan 8 15:32:20 2004
+++ Zope/doc/CHANGES.txt Thu Jan 8 15:38:15 2004
@@ -8,6 +8,11 @@
Bugs Fixed
+ - XML-RPC marshalling of class instances used the instance
+ __dict__ to marshal the object, and could include attributes
+ prefixed with an underscore name. These attributes are considered
+ private in Zope and should generally not be disclosed.
+
- Some property types were stored in a mutable data type (list) which
could potentially allow untrusted code to effect changes on those
properties without going through appropriate security checks in
More information about the Zope-Checkins
mailing list