DevProgress / csv-simple-search

Generic Search and Export Tool for .csv files
Apache License 2.0
6 stars 3 forks source link

Potential Security Dangers: Using a regex and the "+" sign #35

Closed decause closed 8 years ago

decause commented 8 years ago

The way we are loading in .csv files with relative paths may work ok for our gh-pages demo, but is def potential danger.

Shout-out @timball for the skoolins today :)

alexyaseen commented 8 years ago

34

33

dxa4481 commented 8 years ago

@decause I don't see the security risk, can you elaborate?