From 7d73ba7919e594d783b3411d7ddb87885aea782d Mon Sep 17 00:00:00 2001 From: GammaC0de Date: Tue, 3 Jan 2023 22:56:42 +0200 Subject: [PATCH] fix arbitrary python code execution by abusing js2py functionality --- src/pyload/core/utils/misc.py | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/src/pyload/core/utils/misc.py b/src/pyload/core/utils/misc.py index 0c8f02dde6..6d2f23cc5e 100644 --- a/src/pyload/core/utils/misc.py +++ b/src/pyload/core/utils/misc.py @@ -1,12 +1,11 @@ # -*- coding: utf-8 -*- import random -import socket import string import js2py -from .check import is_mapping +js2py.disable_pyimport() def random_string(length):