From: [EMAIL PROTECTED] Operating system: Any PHP version: 4.1.1 PHP Bug Type: Feature/Change Request Bug description: New Security Features
Hi, since 4.1.0 you announced the new security feature for passing variables to a script. You said the new feature will be optional for a limited time only, then you will make the new feature the default for handling passed variables. The old, unsecure handling, will not be possible then. If that is true, me, and many other PHP-Developers, will have major problems. I have hundreds of scripts to change. It would take ages to change them to work on the new PHP. It would not be a problem if all the providers keep an old version of PHP. But the truth is, they frequently make updates of PHP. I would really recommend you to leave the new security feature optional! My main provider informed me to apply appropriate changes to my scripts as soon as possible. So this note was written with some kind of panic in my eyes ;) Thanx for reading this... Volker Puttrich Director for Webdevelopment DigialLiquid New Media Network -- Edit bug report at http://bugs.php.net/?id=15497&edit=1 -- Fixed in CVS: http://bugs.php.net/fix.php?id=15497&r=fixedcvs Fixed in release: http://bugs.php.net/fix.php?id=15497&r=alreadyfixed Need backtrace: http://bugs.php.net/fix.php?id=15497&r=needtrace Try newer version: http://bugs.php.net/fix.php?id=15497&r=oldversion Not developer issue: http://bugs.php.net/fix.php?id=15497&r=support Expected behavior: http://bugs.php.net/fix.php?id=15497&r=notwrong Not enough info: http://bugs.php.net/fix.php?id=15497&r=notenoughinfo Submitted twice: http://bugs.php.net/fix.php?id=15497&r=submittedtwice