Quantcast
Channel: WordPress.org Forums » All Topics
Viewing all articles
Browse latest Browse all 59525

Why does your code use PHP functions deemed dangerous such as escapeshellarg?

$
0
0

Replies: 0

After our site was hacked I began a review of our codebase searching for potential vulnerabilities. I found a list of php functions that considered to be dangerous in that they create vulnerabilities.

I found one of those functions (escapeshellarg) in /sucuri-scanner/src/command.lib/php.

Can you please explain why I should not be concerned and continue to use your plugin?


Viewing all articles
Browse latest Browse all 59525

Trending Articles