Skip to content

Conversation

@JamesMasonRC
Copy link

This should make it safe(er) to run rules from untrusted sources.

Note: the existing logic enforces that the first argument passed to an operation is always an array, which means exploiting the problem is more difficult than simply passing "eval" as an operation.

@JamesMasonRC
Copy link
Author

@bhgames is this repo still maintained? :)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant