News Feed
Jobs Feed
Sections




News Archive
Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

Sara Golemon's Blog:
create_function() is not your friend
May 21, 2007 @ 09:31:00

In response to this previous post from Felix Geisendorfer, Sara Golemon shares a few thoughts on why she thinks it's just the other way around - create_function is not your friend.

In the short post she lists just a few of the issues surrounding the use of the function including that it:

  • is prone to critical abuse by user-supplied code
  • skips opcode cache optimizations
  • encourages not using comments (evil)
  • 100% blind to reflection or PHPDoc style documentation generation

0 comments voice your opinion now!
createfunction eval abuse opcodecache reflection phpdoc createfunction eval abuse opcodecache reflection phpdoc


blog comments powered by Disqus

Similar Posts

O'Reilly: Code As Data: Reflection in PHP

Zend Developer Zone: Security Tips #10, #11, and #12

Reddit.com: PSR-6 Caching Interface and PSR-5 PHPDoc enter Draft status

Chris Tankersley's Blog: Getting Started with Reflection

PHP-GTK Community Site: Enabling code completion for PHP-GTK in your PHP IDE


Community Events











Don't see your event here?
Let us know!


component unittest project facebook language package composer hack framework install symfony2 application performance security hhvm podcast release example database introduction

All content copyright, 2014 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework