From: www-data Date: Sun, 19 Mar 2006 20:49:26 +0000 (+0000) Subject: web commit by joey X-Git-Url: https://scripts.mit.edu/gitweb/www/ikiwiki.git/commitdiff_plain/93f8af972bd5b0c2a1f178b5b5d4336153010673 web commit by joey --- diff --git a/doc/security.mdwn b/doc/security.mdwn index 0731ff3c5..72568a348 100644 --- a/doc/security.mdwn +++ b/doc/security.mdwn @@ -84,7 +84,7 @@ been no problem yet. ikiwiki does not expose untrusted data to the shell. In fact it doesn't use system() at all, and the only use of backticks is on data supplied by the -wiki admin. And it runs with taint checks on of course.. +wiki admin and untainted filenames. And it runs with taint checks on of course.. ## cgi data security