[Python-modules-team] Bug#933921: src:python-tablib: Unsafe use of yaml.load()

Thomas Goirand zigo at debian.org
Tue Aug 6 08:39:48 BST 2019


On 8/6/19 1:58 AM, Joseph Herlant wrote:
> Hi,
> 
> Thanks Scott for the report.
> Tomas: the repository in Openstack was archived long ago because it
> was ported to https://salsa.debian.org/python-team/modules/python-tablib
> The module is used by other packages than openstack (like
> django-tables if I remember correctly), so could you please hold off
> the removal request please?
> If the repo in the openstack group bother you, you can drop it but
> please don't drop tablib (at least not the python3 version).
> 
> Thanks,
> Joseph
> 

Indeed, it has a single reverse build-depends. Closing the RM bug then.
I'd still advise upstream against using this library which is of lower
code quality.

Cheers,

Thomas Goirand (zigo)



More information about the Python-modules-team mailing list