Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

PHP tainted exec #3468

Merged
merged 3 commits into from
Sep 19, 2024
Merged

PHP tainted exec #3468

merged 3 commits into from
Sep 19, 2024

Conversation

Sjord
Copy link
Contributor

@Sjord Sjord commented Sep 5, 2024

When user input is passed to a function that executes a shell command, without escaping.

When user input is passed to a function that executes a shell command, without
escaping.
@0xDC0DE
Copy link
Contributor

0xDC0DE commented Sep 6, 2024

Hi @Sjord !

This looks good to me. Thanks for yet another contribution! 🔥

@0xDC0DE 0xDC0DE enabled auto-merge (squash) September 6, 2024 07:51
Sjord and others added 2 commits September 6, 2024 09:56
Co-authored-by: Pieter De Cremer (Semgrep) <pieter@r2c.dev>
@0xDC0DE 0xDC0DE merged commit 6d1b466 into semgrep:develop Sep 19, 2024
8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

Successfully merging this pull request may close these issues.

3 participants