You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
sonic platform scripts use many mechanisms to invoke an external executable. However, doing so may present a security issue if appropriate care is not taken to sanitize any user provided or variable input. If possible, we have to ensure that all external commands called from the program are statically created. currently some vendor started to use safe mechanisms but others still use old ways. is there any plan to unify the development approach?.
The text was updated successfully, but these errors were encountered:
sonic platform scripts use many mechanisms to invoke an external executable. However, doing so may present a security issue if appropriate care is not taken to sanitize any user provided or variable input. If possible, we have to ensure that all external commands called from the program are statically created. currently some vendor started to use safe mechanisms but others still use old ways. is there any plan to unify the development approach?.
The text was updated successfully, but these errors were encountered: