Skip to content

Conversation

@nahsra
Copy link
Contributor

@nahsra nahsra commented Dec 12, 2024

This change fixes more shapes of log injection vulnerabilities, and bumps the toolkit version to guarantee safety when passing non-String types to stripAll.

@nahsra nahsra requested a review from drdavella December 12, 2024 19:32
@sonarqubecloud
Copy link

Quality Gate Passed Quality Gate passed

Issues
2 New issues
0 Accepted issues

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarQube Cloud

@nahsra nahsra enabled auto-merge (squash) December 12, 2024 19:53
@nahsra nahsra merged commit 394739f into main Dec 12, 2024
8 checks passed
@nahsra nahsra deleted the feature/improve-log-injection branch December 12, 2024 20:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants