Open get-famed[bot] opened 1 year ago
π€ Assignees for issue Detected non-static command inside Command. Audit the input to 'exec.Command'. If unverified user data can reach this call site, this is a code injection vulnerability. A malicious actor can inject a malicious script to execute arbitrary code. #21 are now eligible to Get Famed.
β Add assignees to track contribution times of the issue π¦ΈββοΈπ¦ΉοΈ β Add a single severity (CVSS) label to compute the score π·οΈοΈ
Happy hacking! π¦Ύπβ€οΈοΈ
π¦ΈββοΈ Famed Scanner
π Description
Detected non-static command inside Command. Audit the input to 'exec.Command'. If unverified user data can reach this call site, this is a code injection vulnerability. A malicious actor can inject a malicious script to execute arbitrary code.
π Related files
exec.go
This issue was created by famed π€