Skip to content

fix dynamic RegExp generation#295

Open
inkz wants to merge 1 commit intobailicangdu:masterfrom
inkz:fix-regex-1
Open

fix dynamic RegExp generation#295
inkz wants to merge 1 commit intobailicangdu:masterfrom
inkz:fix-regex-1

Conversation

@inkz
Copy link

@inkz inkz commented Dec 19, 2024

It is insecure to use eval() for turning user input into a regular expression, native way of doing this would be to utilize RegExp consturctor new RegExp().

@longmore
Copy link

longmore commented Dec 19, 2024 via email

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

2 participants