Security question

classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view

Security question

Hi team,

I understand it is possible to run asciidoctor in various security/safe modes that - for example - disable include:: directives.

I have been searching everywhere but cannot find an example of how including a file could cause a risk.

I understand the general concept, but fail to see how an included code could be executed by asciidoctor.