Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Language with dynamic code evaluation on the server plus fat client-setver protocol that attempts to sync raw objects of the language. What could have gone wrong?

I wonder if similar magic fat pipe technologies (like Blazor) have similar vulnerabilities waiting to be discovered. Maybe compiled languaged are safer by default in this scenario, but anything built in Python, PHP, Ruby or any "code is data" language would probably fare similarly poorly.





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: