From 71b7245439e42154956e0cc073b3aaaaef4b9b4a Mon Sep 17 00:00:00 2001 From: Pierre-Yves Chibon Date: Tue, 19 Nov 2019 14:16:28 +0100 Subject: [PATCH] Use yaml.safe_load() rather than the unsafe yaml.load() Signed-off-by: Pierre-Yves Chibon --- pagure_sync_bugzilla.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pagure_sync_bugzilla.py b/pagure_sync_bugzilla.py index e35cd87..3e8a278 100644 --- a/pagure_sync_bugzilla.py +++ b/pagure_sync_bugzilla.py @@ -533,7 +533,7 @@ def _get_override_yaml(project, session): print('Querying {0}'.format(pagure_override_url)) override_rv = session.get(pagure_override_url, timeout=30) if override_rv.status_code == 200: - override_yaml = yaml.load(override_rv.text) + override_yaml = yaml.safe_load(override_rv.text) return override_yaml.get('bugzilla_contact', {}) return {}