Do not load Python code from YAML files
authorPaul Wise <pabs@debian.org>
Mon, 15 May 2017 06:43:42 +0000 (14:43 +0800)
committerPaul Wise <pabs@debian.org>
Mon, 15 May 2017 06:53:50 +0000 (14:53 +0800)
dsa-nagios-checks/checks/dsa-check-backuppg

index 14baf58..ca6c159 100755 (executable)
@@ -62,7 +62,7 @@ def load_conf(cf):
         configfile = '/etc/nagios/dsa-check-backuppg.conf'
 
     f = open(configfile)
-    config = yaml.load(f.read())
+    config = yaml.safe_load(f.read())
     f.close()
     return config