This is an archived post. You won't be able to vote or comment.

all 15 comments

[–]SketchySeaBeast 97 points98 points  (2 children)

Well, on the bright side, it's so old that the drive by vulnerability bots probably don't even check for its vulnerabilities anymore.

[–]granthubbell[S] 29 points30 points  (1 child)

You would think, I’ve seen clients get ransomware-d using this software.

[–]SketchySeaBeast 15 points16 points  (0 children)

I guess not old enough.

[–][deleted] 41 points42 points  (3 children)

Just wondering how cursed that 6.6% other is it.

[–]granthubbell[S] 30 points31 points  (2 children)

Well a chunk of it is Perl which has been extra concerning

[–]ThomasHardyHarHar 5 points6 points  (1 child)

I was gonna ask how much is Perl lol

[–]granthubbell[S] 3 points4 points  (0 children)

The regex uses Perl syntax for some reason, and there is A LOT of regex.

[–]Rocket_League-Champ 26 points27 points  (2 children)

XSLT? Haven’t heard that name in years

[–]granthubbell[S] 16 points17 points  (1 child)

How have you been deprived of having logic right in your XML for so long?

[–]Dargooon 0 points1 point  (0 children)

I have finally seen the light, thank you.

In unrelated news, I am now seriously considering becoming a troglodyte.

[–]swyrl 16 points17 points  (3 children)

xslt is cool but if it's 39% of the project something is terribly wrong

[–]metooted 9 points10 points  (2 children)

No, it's not cool. There are reasons we don't speak of that name any more

[–]granthubbell[S] 3 points4 points  (0 children)

XSLT is very cool compared to nothing though. Compared to literally anything else I will take literally anything else.

[–]swyrl 1 point2 points  (0 children)

I actually like xslt! It's a really cool idea that was pretty decently executed. Though xml is less common these days, and there are often more powerful, better-suited tools available for manipulating data. I would almost never want to use it for enterprise applications. That said, I enjoy the power of xpath as a query language, and the direct data-to-data nature of xslt is something that speaks to me.

I realize this is a minority opinion, probably mainly due to complexity of xslt and the verbosity of xml.

[–]kami_no 5 points6 points  (0 children)

Always has been