Skip to content

Command Injection vulnerability in getsentry/sentry-javascript .github/workflows/fix-security-vulnerability.yml #19553

@linear

Description

@linear

Repo: getsentry/sentry-javascript
Confidence: High
Severity: High
Weakness: yaml.github-actions.security.run-shell-injection.run-shell-injection


To reduce risk of accidental information disclosure, we are intentionally not exposing full vulnerability details here
Please see the parent ticket or Semgrep Console for more details: https://semgrep.dev/orgs/sentry/findings/706729030

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions