summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorRobert Newson <rnewson@apache.org>2020-04-23 22:24:37 +0100
committerGitHub <noreply@github.com>2020-04-23 22:24:37 +0100
commit4b7ea7fc0cb61f42b88e2621601a3160415b6675 (patch)
tree37af2607044af5e2fc904c95a813551e0cc89215
parent17f8c22657fc0e582d5fe55244eed93824679482 (diff)
parentb4078092151c12e18df0ac37faa980486e908b7d (diff)
downloadcouchdb-2.3.x.tar.gz
Merge pull request #2819 from apache/mango-bookmark-2.3.xarchive/2.3.x2.3.x
safer binary_to_term in mango_json_bookmark
-rw-r--r--src/mango/src/mango_json_bookmark.erl2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/mango/src/mango_json_bookmark.erl b/src/mango/src/mango_json_bookmark.erl
index 97f81cfb8..83fd00f29 100644
--- a/src/mango/src/mango_json_bookmark.erl
+++ b/src/mango/src/mango_json_bookmark.erl
@@ -54,7 +54,7 @@ unpack(nil) ->
nil;
unpack(Packed) ->
try
- Bookmark = binary_to_term(couch_util:decodeBase64Url(Packed)),
+ Bookmark = binary_to_term(couch_util:decodeBase64Url(Packed), [safe]),
verify(Bookmark)
catch _:_ ->
?MANGO_ERROR({invalid_bookmark, Packed})