|
|
|
|
|
by claudius
4459 days ago
|
|
> loading external entities pointed in an XML automatically? what kind of joke is that? Your browser does much the same when parsing (X)HTML. LaTeX naturally includes ‘external’ resources when building an output file. There are tons of examples like that, loading external entities per se is not wrong, it’s mostly just wrong under these specific circumstances. |
|
This compared to XML parsers, for which there are often multiple per language, each of which may be implemented to wildly different levels of sophistication re: security.