INTO-CPS-Association / DTaaS

:factory: :left_right_arrow: :busts_in_silhouette: Digital Twin as a Service
https://into-cps-association.github.io/DTaaS/
Other
116 stars 57 forks source link

Runner limit permitted commands #1016

Closed prasadtalasila closed 1 month ago

prasadtalasila commented 1 month ago

Limit permitted commands in Runner

Type of Change

Description

Previously, any commands placed in script directory could be executed. Now, only the listed commands in the configuration file are executed. This is a security improvement.

Testing

The end-to-end tests have been performed. Unit tests are completed only for query validation code.

Checklist

codeclimate[bot] commented 1 month ago

Code Climate has analyzed commit b127dc77 and detected 0 issues on this pull request.

View more on Code Climate.