[Zope] Re Re: Regular expressions insecurity?

Tue Wennerberg tue@wennerberg.dk
Sun, 19 Jan 2003 18:05:23 +0100


Matt Young wrote:
>>Re: Regular expressions insecurity? (Tue
>>Wennerberg)
> 
> 
> <educated_guess>
> I think xrange() is limited in Zope so that you can't use
> it to produce a huge auxillary d.s. (list of numbers to
> iterate over).  A nasty re on the right data would probably
> produce some huge data structures too.  Can't rewrite every
> package for Zope...
> </educated_guess>
> 
> Pity because I love re.  But of course you can probably get
> by with an external method.

I love regular expressions too. But having to create an external method 
is just too cumbersome for everyday work. I think Zope is missing out on 
a great feature here, without getting more security in return.

I wish I could get some form of reply from a definitive source (core 
developers, maybe?).

-- 
Mvh. Tue Wennerberg
Civilingeniør og Freelance Udvikler
http://tuewennerberg.dk/ - tue@wennerberg.dk - (+45) 4043 6735