-
Notifications
You must be signed in to change notification settings - Fork 1
Open
Description
Currently we parse the ast, but resource attacks can be executed earlier (when the ast is built)
Is there a way to get the input string first and analyze it?
Or are we able to limit the AST builder in such a way, it cannot be abused? Eg. the stack can be exhausted by high depths before any validation takes place
Metadata
Metadata
Assignees
Labels
No labels