diff options
| author | Ihor Radchenko | 2024-06-21 15:45:25 +0200 |
|---|---|---|
| committer | Stefan Kangas | 2024-06-22 00:54:36 +0200 |
| commit | c645e1d8205f0f0663ec4a2d27575b238c646c7c (patch) | |
| tree | 0b80f9172defcc30b279718f9742c1732d16a4bc /java | |
| parent | 50a237c4689b0531e82d5f731ae7c825f3d43310 (diff) | |
| download | emacs-c645e1d8205f0f0663ec4a2d27575b238c646c7c.tar.gz emacs-c645e1d8205f0f0663ec4a2d27575b238c646c7c.zip | |
org-link-expand-abbrev: Do not evaluate arbitrary unsafe Elisp code
* lisp/org/ol.el (org-link-expand-abbrev): Refuse expanding %(...)
link abbrevs that specify unsafe function. Instead, display a
warning, and do not expand the abbrev. Clear all the text properties
from the returned link, to avoid any potential vulnerabilities caused
by properties that may contain arbitrary Elisp.
Diffstat (limited to 'java')
0 files changed, 0 insertions, 0 deletions