Mention also -P and PYTHONSAFEPATH in the Security Considerations
page.
* :mod:`xml`: :ref:`XML vulnerabilities <xml-vulnerabilities>`
* :mod:`zipfile`: :ref:`maliciously prepared .zip files can cause disk volume
exhaustion <zipfile-resources-limitations>`
+
+The :option:`-I` command line option can be used to run Python in isolated
+mode. When it cannot be used, the :option:`-P` option or the
+:envvar:`PYTHONSAFEPATH` environment variable can be used to not prepend a
+potentially unsafe path to :data:`sys.path` such as the current directory, the
+script's directory or an empty string.
* :pep:`673`: ``Self`` type.
* :pep:`675`: Arbitrary literal string type.
+Security improvements:
+
+* New :option:`-P` command line option and :envvar:`PYTHONSAFEPATH` environment
+ variable to not prepend a potentially unsafe path to :data:`sys.path` such as
+ the current directory, the script's directory or an empty string.
+
New Features
============