You must keep in mind that it was not perl's email-sending features, used by formmail, which are not necessarily insecure. It is the formmail script itself which is insecure.
A PHP script with equivalent functionality could be just as insecure, but it all depends on how the script is written. If the author of the script is sufficiently paranoid about hostile user input, a PHP formmail-equivalent script could be, but is not necessarily, secure.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.