From 53917cb499147b494fb488e945662535e01013a2 Mon Sep 17 00:00:00 2001 From: "wu.zhihui" Date: Mon, 21 Nov 2016 09:42:34 +0800 Subject: Fix a security issue load yaml file by using function safe_load() See link http://pyyaml.org/wiki/PyYAMLDocumentation for details. Change-Id: I91d1746c5ca1bd1770d47d4e8d0f85b6aed47934 Signed-off-by: wu.zhihui --- deploy/get_conf.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'deploy') diff --git a/deploy/get_conf.py b/deploy/get_conf.py index 37cacb51..31ccaca0 100755 --- a/deploy/get_conf.py +++ b/deploy/get_conf.py @@ -13,7 +13,7 @@ import yaml def init(file): with open(file) as fd: - return yaml.load(fd) + return yaml.safe_load(fd) def networkdecorator(func): -- cgit 1.2.3-korg