Skip to content

Conversation

Anon-Artist
Copy link
Contributor

@Anon-Artist Anon-Artist commented Jan 18, 2021

Fix for Arbitary Code Execution in Test file

πŸ› οΈ PR Summary

Made with ❀️ by Ultralytics Actions

🌟 Summary

Enhancing security by using safe YAML loader in testing script.

πŸ“Š Key Changes

  • Switched from yaml.FullLoader to yaml.SafeLoader in the test script.

🎯 Purpose & Impact

  • πŸ›‘οΈ Increased Security: yaml.SafeLoader is used to load a YAML file in a way that prevents the execution of arbitrary code, which could be an exploit vector if untrusted YAML files were loaded.
  • πŸš€ Stability for Users: This change prioritizes user safety without affecting the functionality of the test script, ensuring that users can run tests on their datasets securely.

@glenn-jocher glenn-jocher merged commit 91c30e4 into ultralytics:master Jan 18, 2021
KMint1819 pushed a commit to KMint1819/yolov5 that referenced this pull request May 12, 2021
taicaile pushed a commit to taicaile/yolov5 that referenced this pull request Oct 12, 2021
BjarneKuehl pushed a commit to fhkiel-mlaip/yolov5 that referenced this pull request Aug 26, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants