We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 7f3b4c4 commit b43d8cfCopy full SHA for b43d8cf
docs/security.md
@@ -18,4 +18,6 @@ you may want to consider the following as you use TabPy:
18
/evaluate endpoint. To disable /evaluate endpoint, set "TABPY_EVALUATE_ENABLE"
19
to false in config file.
20
- Always use the most up-to-date version of Python.
21
- Using earlier versions can leave scripts vulnerable to malicious attacks.
+ TabPy relies on Tornado and if older verions of Python are used with Tornado
22
+ then malicious users can potentially poison python server web caches
23
+ with parameter cloaking.
0 commit comments