subprocess module call
Medium
- Category
- Dangerous Code Execution
- Content
try: # Validate script path to prevent command injection safe_path = _validate_script_path(migrate_script, kb_path) subprocess.run([sys.executable, str(safe_path)], check=True) except ValueError as e: print(f"⚠️ Migration script validation failed: {e}") except subprocess.CalledProcessError:- Confidence
- 91% confidence
- Finding
- subprocess.run([sys.executable, str(safe_path)], check=True)
