diff --git a/bandit/blacklists/imports.py b/bandit/blacklists/imports.py index 3363c7fa4..cca7a4462 100644 --- a/bandit/blacklists/imports.py +++ b/bandit/blacklists/imports.py @@ -152,7 +152,7 @@ +------+---------------------+------------------------------------+-----------+ | ID | Name | Imports | Severity | +======+=====================+====================================+===========+ -| B411 | import_xmlrpclib | - xmlrpclib | high | +| B411 | import_xmlrpclib | - xmlrpc | high | +------+---------------------+------------------------------------+-----------+ B412: import_httpoxy @@ -374,7 +374,7 @@ def gen_blacklist(): "import_xmlrpclib", "B411", issue.Cwe.IMPROPER_INPUT_VALIDATION, - ["xmlrpclib"], + ["xmlrpc"], "Using {name} to parse untrusted XML data is known to be " "vulnerable to XML attacks. Use defused.xmlrpc.monkey_patch() " "function to monkey-patch xmlrpclib and mitigate XML " diff --git a/examples/xml_xmlrpc.py b/examples/xml_xmlrpc.py index d60e8c9b3..d98fda6dd 100644 --- a/examples/xml_xmlrpc.py +++ b/examples/xml_xmlrpc.py @@ -1,4 +1,4 @@ -import xmlrpclib +import xmlrpc from SimpleXMLRPCServer import SimpleXMLRPCServer def is_even(n):