Skip to content

v1.1.1

Choose a tag to compare

@tumf tumf released this 02 Jul 04:58

Security patch release for GHSA-gvwf-5g64-3vvw.

  • Harden default command argument policy against additional tar command-execution options.
  • Harden awk command execution detection.
  • Harden git execution-capable config detection.
  • Apply default dangerous-argument checks consistently for absolute-path allowlist commands.

Validation:

  • make check
  • targeted command validator and shell executor tests