Description
When somebody can trick your program into running arbitrary code, that is the worst kind of security bug. But of course, your program has to run some code or it's not much of a program. So how do we tell the difference between the two?
When somebody can trick your program into running arbitrary code, that is the worst kind of security bug. But of course, your program has to run some code or it's not much of a program. So how do we tell the difference between the two?