Date: 08/08/01
- Next message: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Previous message: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Next in thread: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Reply: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Reply: Jani Taskinen: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
At 20:14 8/8/2001, Jani Taskinen wrote the following:
--------------------------------------------------------------
>On Wed, 8 Aug 2001, Cynic wrote:
>
>>How about $_DONT_TOUCH_THIS ? :)
>>Seriously though, I vote for $_REQUEST. After all, it contains
>>data which is (generally) tied to one particular request...
>
>This reminds me that should the $_FILES be included in this
>data too? As it's also something you shouldn't trust and
>it's also coming from the user.
>
>--Jani
Yeah. And $_SESSION too.
cynic <email protected>
-------------
And the eyes of them both were opened and they saw that their files
were world readable and writable, so they chmoded 600 their files.
- Book of Installation chapt 3 sec 7
-- PHP Development Mailing List <http://www.php.net/> To unsubscribe, e-mail: php-dev-unsubscribe <email protected> For additional commands, e-mail: php-dev-help <email protected> To contact the list administrators, e-mail: php-list-admin <email protected>
- Next message: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Previous message: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Next in thread: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Reply: Jason Greene: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Reply: Jani Taskinen: "Re: [PHP-DEV] Re: The new $_GET/POST/ENV (was: Re: [PHP-CVS] cvs: php4 / NEWS...)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

