[Koha-bugs] [Bug 23890] Plugins that utilise possibly security breaching hooks should warn

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Tue May 5 01:44:34 CEST 2020


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=23890

--- Comment #9 from David Cook <dcook at prosentient.com.au> ---
I like all those ideas, Katrin. 

Bug 24632 would allow installation of only plugins signed by trusted providers.

Bug 25370 would allow installation of only plugins with certain package names. 

Turning off manual plugin uploads might also be a good idea.

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are watching all bug changes.


More information about the Koha-bugs mailing list