Skip to content

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:184] #195

@github-actions

Description

@github-actions

https://github.com/aszaryk/github-verademo/blob/db6851f1c71e95f0033b40585352fe04df4d5563/undefined#LNaN-LNaN

Filename: undefined

Line: undefined

CWE: 78 (Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection'))

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

Metadata

Metadata

Assignees

No one assigned

    Labels

    Veracode Policy ScanA Veracode Flaw found during a Policy or Sandbox ScanVeracodeFlaw: Very HighA Veracode Flaw, Very High severity

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions