Re: JIT (was RE: [PHP-DEV] Coercive Scalar Type Hints RFC)
| From: | Lester Caine | Date: | Mon, 23 Feb 2015 01:14:23 +0000 |
| Subject: | Re: JIT (was RE: [PHP-DEV] Coercive Scalar Type Hints RFC) | ||
| References: | 1 2 3 4 5 6 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-83521@lists.php.net to get a copy of this message | ||
On 23/02/15 00:25, Anthony Ferrara wrote:
> And as the static analyzer traces back, if it finds possibilities that
> don't match (for example, if you assigned it directly from $_POST),
> it's able to say that either the original assignment or the function
> call is an error.
Why would using an integer I've passed in a URL be a 'fault'? All of the
data navigation functions pass their state via the URL and one simply
protects against hackers by filtering the state to a default value if it
does not return the correct integer data.
--
Lester Caine - G8HFL
-----------------------------
Contact - http://lsces.co.uk/wiki/?page=contact
L.S.Caine Electronic Services - http://lsces.co.uk
EnquirySolve - http://enquirysolve.com/
Model Engineers Digital Workshop - http://medw.co.uk
Rainbow Digital Media - http://rainbowdigitalmedia.co.uk