scrapy / scrapy

Scrapy, a fast high-level web crawling & scraping framework for Python.
https://scrapy.org
BSD 3-Clause "New" or "Revised" License
51.16k stars 10.35k forks source link

Use `defusedxml.xmlrpc` #6250

Closed wRAR closed 2 months ago

wRAR commented 2 months ago

https://bandit.readthedocs.io/en/latest/blacklists/blacklist_imports.html#b411-import-xmlrpclib

https://github.com/tiran/defusedxml?tab=readme-ov-file#defusedxmlxmlrpc