summaryrefslogtreecommitdiff
path: root/src/tests/disable_function/disabled_functions_ret3.phpt
diff options
context:
space:
mode:
authorjvoisin2021-04-27 22:22:34 +0200
committerjvoisin2021-04-27 22:26:24 +0200
commitd9cccbbe417d305bb56911cd07a7feac6b89e9a6 (patch)
tree98b0898cc287d714169318b698a6756741929b5f /src/tests/disable_function/disabled_functions_ret3.phpt
parenta3feae2fb319899d13ab5013f510b51ce20b4db4 (diff)
Protect against XXE in php8
PHP8 disables external entities by default, but they can still be explicitly used (cf. https://blog.sonarsource.com/wordpress-xxe-security-vulnerability/), which is badâ„¢. The right way to defend against XXE is now to set libxml_set_external_entity_loader to null.
Diffstat (limited to 'src/tests/disable_function/disabled_functions_ret3.phpt')
0 files changed, 0 insertions, 0 deletions