subprocess module call
Medium
- Category
- Dangerous Code Execution
- Content
cmd = cmd.replace("{session_id}", session_id.replace('"', '\\"')) log(f"INVOKING COMMAND: {cmd[:300]}") try: result = subprocess.run( cmd, shell=True, capture_output=True, text=True, timeout=timeout_secs ) if result.returncode != 0:- Confidence
- 99% confidence
- Finding
- result = subprocess.run( cmd, shell=True, capture_output=True, text=True, timeout=timeout_secs )
