microsoft / ailab

Experience, Learn and Code the latest breakthrough innovations with Microsoft AI
https://www.ailab.microsoft.com/experiments/
MIT License
7.69k stars 1.39k forks source link

🚨 Potential OS Command Injection (CWE-78) #136

Open huntr-helper opened 3 years ago

huntr-helper commented 3 years ago

👋 Hello, @tarasha, @macastejon, @gsegares - a potential medium severity OS Command Injection (CWE-78) vulnerability in your repository has been disclosed to us.

Next Steps

1️⃣ Visit https://huntr.dev/bounties/1-other-microsoft/ailab for more advisory information.

2️⃣ Sign-up to validate or speak to the researcher for more assistance.

3️⃣ Propose a patch or outsource it to our community - whoever fixes it gets paid.

✏️ NOTE: If we don't hear from you in 14 days, we will proactively source a fix for this vulnerability (and open a PR) to ensure community safety.


Confused or need more help?


This issue was automatically generated by huntr.dev - a bug bounty board for securing open source code.