subprocess module call
Medium
- Category
- Dangerous Code Execution
- Content
from fulcra_api.core import FulcraAPI client = FulcraAPI() cli = shlex.split(os.environ.get("FULCRA_CLI_COMMAND", "uv tool run fulcra-api")) proc = subprocess.run( [*cli, "auth", "print-access-token"], capture_output=True, text=True,- Confidence
- 94% confidence
- Finding
- proc = subprocess.run( [*cli, "auth", "print-access-token"], capture_output=True, text=True, check=False, timeout=30, )
