Permalink
Browse files

Add security warning to README about perl -c and BEGIN blocks for tho…

…se unaware of the issues.
  • Loading branch information...
illusori committed Oct 28, 2012
1 parent a83bcb2 commit a22072c515da401721046a061991612bd2d7b69f
Showing with 7 additions and 0 deletions.
  1. +7 −0 README.mkdn
View
@@ -158,3 +158,10 @@ Other bug fixes
* Compile is now clean without warnings.
* Support for invoking correct perl under perlbrew multiple-installs.
* No longer prompt about running flymake processes when killing buffers.
+
+Known Issues
+------------
+
+ * Perl syntax checking uses "perl -c", which executes BEGIN blocks, this can
+ be considered a security vulnerability when opening untrusted files.
+ For more information: http://stackoverflow.com/a/12908487/870000

0 comments on commit a22072c

Please sign in to comment.