Hi Team, we are using prototype.js for past 8 years in our product development, Recently our organization introduced code scanner(HP Fortify) to verify any code vulnerable in the product. The scanner identified as prototype.js& script.aculo.us uses eval and math.rondom, with is insecure.
Can we able to remove/drop the usage of those functions in prototype.js? or is there any alternative way to achieve without using those functions? Thanks, Mahendran.. -- You received this message because you are subscribed to the Google Groups "Prototype & script.aculo.us" group. To unsubscribe from this group and stop receiving emails from it, send an email to prototype-scriptaculous+unsubscr...@googlegroups.com. To post to this group, send email to prototype-scriptaculous@googlegroups.com. Visit this group at http://groups.google.com/group/prototype-scriptaculous. For more options, visit https://groups.google.com/d/optout.