with yaml.load, a code execution was possible when called without an explicit Loader.
To solve this with backwards compatibility, if the new FullLoader is found, it is used.
If it is not found, the old SafeLoader is used, Which has slightly less functionality but is safe.
with yaml.load, a code execution was possible when called without an explicit Loader. To solve this with backwards compatibility, if the new FullLoader is found, it is used. If it is not found, the old SafeLoader is used, Which has slightly less functionality but is safe.