Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

text file as configuration #37

Open
johnyf opened this issue Jan 24, 2017 · 0 comments
Open

text file as configuration #37

johnyf opened this issue Jan 24, 2017 · 0 comments

Comments

@johnyf
Copy link

johnyf commented Jan 24, 2017

The color theme appears to be loaded from the python file ~/mygitcheck.py. This means execution of arbitrary code from outside site-packages (which could be a root installation). It seems to be a security concern. Since only the color theme is loaded from that file, wouldn't a text or json file work?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant