T09 · Insecure Skill Coding Practices
- Location
scripts/release_checker.py:613- Finding
Shell Command Injection Through User-Controlled Git Branch Argument
- Content
View full analysis
--name-status ``` 4. `subprocess.run()` executes the string with `shell=True`. 5. The shell interprets injected metacharacters and executes the attacker-selected command. 6. The injected command inherits the Skill process's filesystem access, environment, network access, and other operating-system permissions. A representati ...[truncated 1126 chars]- Remediation
View remediation
