﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	resolution	keywords	cc	blockedby	blocking	notify_on_close	platform	project
4348	conference uses notoriously insecure pickle	Greg Couch	Tom Goddard	"pickle create objects directly during deserialization and is known to be insecure.  See https://nedbatchelder.com/blog/202006/pickles_nine_flaws.html as well as many other published articles.

At least it is not in the session data, but you still need to trust your collaborators more than you should have to."	defect	closed	major		VR		fixed						all	ChimeraX
