-
Notifications
You must be signed in to change notification settings - Fork 1.7k
Closed as not planned
Description
I wanted to share the audit on JQ that I did:
https://codedd.ai/cb8413df-c412-49d9-91d6-c7b910e0286d/summary
Hopefully its helpful!
Some issues where discovered and not sure if you agree on them:
- Path traversal vulnerabilities (e.g., in linker.c).
- Potential shell injection risks in some M4 build scripts.
- Unsafe downloading of external content in the iOS compilation script.
Metadata
Metadata
Assignees
Labels
No labels