numexpr malicious attack safety
Asked Answered
B

0

7

Is numexpr safe again malicious attack?

I'm considering using it in a web application, to evaluate user input text.

I've also considered using PLY, ASTEVAL and Pyparsing.

Bigod answered 23/7, 2013 at 7:24 Comment(1)
I am also very curious about numexpr and asteval? Hasn't anyone an opinion or experience about these packages? There's no end to the eval is dangerous talk. SymPy may also be susceptible to malicious attack.Levey

© 2022 - 2024 — McMap. All rights reserved.