Could you subclass Storable, and override the deserialization methods so that detainting is done before calling the SUPER method? (Of course, this assumes that you can specify your subclass as an alternative serializer module.)
the lowliest monk
In reply to Re^3: CGI::Session, taint mode, and tainted session file input data
by tlm
in thread CGI::Session, taint mode, and tainted session file input data
by shenme
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |