Skip to content

scripts/mutate_files possible security issue #90

@bucan3ve

Description

@bucan3ve

Hi,

During some security audit activities i encountered robot_upstart and I've spotted a vulnerability in the mutate_files script: it is possible for a user to give as input a malicious pickle to the script which is then executed.
I won't spoil more details for security reasons, so feel free to contact me if you want more details.

mail: [email protected]

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions