Skip to content

fix: exploit that could pass a command through PR title or other metadata fields#387

Merged
cx-diogo-rocha merged 2 commits intomasterfrom
AST-151650-fix-pr-title-exploit
Apr 29, 2026
Merged

fix: exploit that could pass a command through PR title or other metadata fields#387
cx-diogo-rocha merged 2 commits intomasterfrom
AST-151650-fix-pr-title-exploit

Conversation

@cx-diogo-rocha
Copy link
Copy Markdown
Contributor

Closes #

Proposed Changes
Fix exploit that could pass a command through PR title or other metadata fields.

Checklist

  • I covered my changes with tests.
  • I Updated the documentation that is affected by my changes:
    • Change in the CLI arguments
    • Change in the configuration file

I submit this contribution under the Apache-2.0 license.

@cx-diogo-rocha cx-diogo-rocha requested a review from a team as a code owner April 28, 2026 14:58
@github-actions
Copy link
Copy Markdown

github-actions Bot commented Apr 28, 2026

kics-logo

KICS version: v1.7.13

Category Results
HIGH HIGH 0
MEDIUM MEDIUM 0
LOW LOW 0
INFO INFO 0
TRACE TRACE 0
TOTAL TOTAL 0
Metric Values
Files scanned placeholder 16
Files parsed placeholder 16
Files failed to scan placeholder 0
Total executed queries placeholder 53
Queries failed to execute placeholder 0
Execution time placeholder 1

@cx-diogo-rocha cx-diogo-rocha changed the title fix: exploit that could pass a command through PR title or other metadata fields. fix: exploit that could pass a command through PR title or other metadata fields Apr 28, 2026
@github-actions
Copy link
Copy Markdown

github-actions Bot commented Apr 28, 2026

Logo
Checkmarx One – Scan Summary & Details52443ac5-7c82-42a6-94c8-5625732808cc

Great job! No new security vulnerabilities introduced in this pull request

cx-eli-shalnev
cx-eli-shalnev previously approved these changes Apr 28, 2026
@cx-diogo-rocha cx-diogo-rocha merged commit 14d3e50 into master Apr 29, 2026
12 of 17 checks passed
@cx-diogo-rocha cx-diogo-rocha deleted the AST-151650-fix-pr-title-exploit branch April 29, 2026 10:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants