Both go2 and nickname's inputs need some improvements on their input checking / character escaping.
This is to prevent things like:
nickname whatever -d /path/to/something;<malicious bash script>
^^ haven't tested but I think when go2 executed whatever, the command string would look like: cd /path/to/something;<malicious bash script> and would do something bad. Sort of like an SQL injection attack or something.
Both go2 and nickname's inputs need some improvements on their input checking / character escaping.
This is to prevent things like:
nickname whatever -d /path/to/something;<malicious bash script>
^^ haven't tested but I think when go2 executed whatever, the command string would look like:cd /path/to/something;<malicious bash script>
and would do something bad. Sort of like an SQL injection attack or something.nickname mynickname -d /path/to/whatever -d /path/to/whatever