fix: possible XML bombs and other exploits by replacing xml.etree.ElementTree with defusedxml.ElementTree
This commit is contained in:
		
							parent
							
								
									ceda81b968
								
							
						
					
					
						commit
						84a825a0b4
					
				|  | @ -8,7 +8,7 @@ if sys.version_info.major == 2:  # pragma: no cover | |||
| 
 | ||||
| import json | ||||
| 
 | ||||
| from xml.etree import ElementTree | ||||
| from defusedxml import ElementTree | ||||
| 
 | ||||
| import re | ||||
| 
 | ||||
|  |  | |||
		Loading…
	
		Reference in New Issue