Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ObjectRepo: Prevent meta-messages like perform: to be sent to object #124

Closed
Skn0tt opened this issue Jul 15, 2021 · 1 comment
Closed

Comments

@Skn0tt
Copy link
Contributor

Skn0tt commented Jul 15, 2021

With access to perform: and similar messages, one could wreak havoc and circumvent any security measurements put in place. We should guard against this, possibly by only allowing messages to be sent that are implemented directly on the object that's messaged (and not inherited handlers).

@florian-str
Copy link
Contributor

Covered by #225

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants