card/lib/cardio/mod/modfile_loader.rb
The use of eval
is a serious security risk. Wontfix
Wontfix
eval File.read(modfile_path), binding
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
This cop checks for the use of Kernel#eval
and Binding#eval
.
Example:
# bad
eval(something)
binding.eval(something)