Version: unspecified
Severity: normal
Whiteboard: storypoints: 2
Description
Description
Details
Details
- Reference
- bz40551
Status | Subtype | Assigned | Task | ||
---|---|---|---|---|---|
Resolved | Reedy | T40975 Deployment of Wikidata to Wikimedia wikis (tracking) | |||
Resolved | None | T42000 Deploy wikidata.org with the Wikidata repository | |||
Resolved | None | T42573 Backport fixes to Wikibase v0.1 | |||
Resolved | None | T42551 Check insertDefaultSites in Utils.php |
Event Timeline
Comment Actions
The way that you're passing in a function to insertDefaultSites in Utils.php makes a security evaluation difficult. I'm not sure what your intent was behind that syntax, but it would be better to either have a whitelist of function names, or possibly use the builtin debugging functions if you're only trying to get debugging information.