zepheira / amara

Amara 2.0. Amara XML toolkit is an open-source collection of Python tools for XML processing, not just tools that happen to be written in Python, but tools built from the ground up to use Python idioms and take advantage of the many advantages of Python over other programming languages.
http://wiki.xml3k.org/Amara2
Apache License 2.0
23 stars 9 forks source link

Security review for XML processing #9

Open uogbuji opened 12 years ago

uogbuji commented 12 years ago

We've known of security vulnerabilities dating from the 4Suite days, many of which are inherited from expat. We've closed some, but there are indications of more, including new ones discovered in our XSLT implementation. This ticket is a general placeholder for sound security review of amara.