Blacklisted PHP functions
Below is a list of illegal PHP commands
Effective July 2015
Function | Notes |
---|---|
shell_exec | |
exec | |
putenv | |
passthru | |
system | |
proc_open | |
popen | |
curl_multi_exec | |
parse_ini_file | |
show_source | |
phpinfo | |
chgrp | |
chown | |
disk_free_space | |
disk_total_space | |
diskfreespace | |
fgetc | |
fgetss | |
fileatime | |
filectime | |
filegroup | |
fileinode | |
fileowner | |
fnmatch | |
fpassthru | |
fscanf | |
is_executable | |
lchgrp | |
lchown | |
linkinfo | |
parse_ini_string | |
readlink | |
realpath_cache_size | |
set_file_buffer | |