Prior to 5.8.0, you had only one level of tainting, enabled with the -T switch. That made unsafe operations fatal using tainted data fatal while running in taint mode.
As of 5.8.0, there is a new "taint warnings" mode enabled by the -t switch. From 5.8.0 perldelta:
A new command-line option, -t is available. It is the little brother of -T: instead of dying on taint violations, lexical warnings are given. This is only meant as a temporary debugging aid while securing the code of old legacy applications. This is not a substitute for -T.
Note the emphasis is in the original document and not just mine.
I'm not certain exactly what you read, but you should read perlsec instead.
Cheers,
Ovid
New address of my CGI Course.
Silence is Evil (feel free to copy and distribute widely - note copyright text)
In reply to Re: Taint Saint
by Ovid
in thread Taint Saint
by Anonymous Monk
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |