[Zope] Re Re: Regular expressions insecurity?
Tue Wennerberg
tue@wennerberg.dk
Sun, 19 Jan 2003 18:05:23 +0100
Matt Young wrote:
>>Re: Regular expressions insecurity? (Tue
>>Wennerberg)
>
>
> <educated_guess>
> I think xrange() is limited in Zope so that you can't use
> it to produce a huge auxillary d.s. (list of numbers to
> iterate over). A nasty re on the right data would probably
> produce some huge data structures too. Can't rewrite every
> package for Zope...
> </educated_guess>
>
> Pity because I love re. But of course you can probably get
> by with an external method.
I love regular expressions too. But having to create an external method
is just too cumbersome for everyday work. I think Zope is missing out on
a great feature here, without getting more security in return.
I wish I could get some form of reply from a definitive source (core
developers, maybe?).
--
Mvh. Tue Wennerberg
Civilingeniør og Freelance Udvikler
http://tuewennerberg.dk/ - tue@wennerberg.dk - (+45) 4043 6735