Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Library used in Github Action causes false-positive #3835

Open
haerter-tss opened this issue Jan 29, 2025 · 0 comments
Open

Library used in Github Action causes false-positive #3835

haerter-tss opened this issue Jan 29, 2025 · 0 comments

Comments

@haerter-tss
Copy link
Member

Situation

We use the module "command-exists" in our Github Action. When a folder is scanned that has the same name as a command, the command-exists module declares it as command injection.

Wanted

This should not happen. Someone already raised an issue in the command-exists repository: Link but it came to no solution.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant