subprocess module call
Medium
- Category
- Dangerous Code Execution
- Content
def wp_cmd(args: str) -> tuple: """执行 WP-CLI 命令,返回 (stdout, stderr, returncode)""" cmd = f"cd {WEB_ROOT} && WP_CLI_PHP={PHP_BIN} {WP_CLI} --allow-root {args}" result = subprocess.run(cmd, shell=True, capture_output=True, text=True, timeout=60) return result.stdout.strip(), result.stderr.strip(), result.returncode def print_header(title):- Confidence
- 97% confidence
- Finding
- result = subprocess.run(cmd, shell=True, capture_output=True, text=True, timeout=60)
