bandit1.7.0

S301 Pickle and modules that wrap it can be unsafe when used to deserialize untrusted data, possible security issue.

  • pickle.loads
  • pickle.load
  • pickle.Unpickler
  • cPickle.loads
  • cPickle.load
  • cPickle.Unpickler
  • dill.loads
  • dill.load
  • dill.Unpickler
  • shelve.open
  • shelve.DbfilenameShelf