You should use taint.
You should be aware of what use re 'eval' allows you to do with regular expressions.
And you should of course be aware of source code injection. Suppose the user specifies: "a/; system( 'some evil command' ); m/a" and your code is:
you're in deep trouble.eval "m/$query/";
Liz
In reply to Re: User regexps
by liz
in thread User regexps
by rkg
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |