fix bandit rule B318: (xml-attribute-parsing) defusedxml package should be used to parse untrusted XML data fix bandit rule B314: (xml-entity-expansion) XML entity expansion should be disabled fix bandit rule B413: (xml-etree-parse) XML parsing library should be secure fix bandit rule B412: (xml-lib-exploits) XML libraries should be vetted for defusedxml or lxml.vulns fix bandit rule B410: (xml-minidom-xxe) XML minidom can be vulnerable to XML eXternal Entity attacks Signed-off-by: Onuralp SEZER <thunderbirdtr@gmail.com> |
||
|---|---|---|
| .. | ||
| ISSUE_TEMPLATE | ||
| workflows | ||
| dependabot.yml | ||
| requirements-dev-min.txt | ||