Comment 6 for bug 917963

Revision history for this message
Thierry Carrez (ttx) wrote : Re: qweb.py (included with ajaxterm) allows arbitrary code execution

For the release under development, that's definitely an option (I would just like to make sure we can point people to a complete replacement).

But as a stable update to an already-released version (Diablo) that's not really an option, as it could potentially break functionality that some people rely on.