~bzr-pqm/bzr/bzr.dev

« back to all changes in this revision

Viewing changes to BRANCH.TODO

  • Committer: Alexander Belchenko
  • Date: 2007-01-24 13:03:32 UTC
  • mto: This revision was merged to the branch mainline in revision 2242.
  • Revision ID: bialix@ukr.net-20070124130332-ane2eqz3eqrtm9u1
Use new API for testing

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
# This file is for listing TODOs for branches that are being worked on.
 
2
# It should ALWAYS be empty in the mainline or in integration branches.
 
3
 
4
 
 
5
Security: it should be impossible, by default, to access files above the base of
 
6
the backing transport of the SmartServerRequestHandler.  Currently '..' and the
 
7
like are not vetted, however.
 
8
 
 
9
Similarly, the SmartWSGIApp should also be careful to disallow '..' and the
 
10
like.