Skip to content

Svenklemm/format searchpath#120

Merged
michelp merged 2 commits intomainfrom
svenklemm/format_searchpath
Oct 7, 2025
Merged

Svenklemm/format searchpath#120
michelp merged 2 commits intomainfrom
svenklemm/format_searchpath

Conversation

@michelp
Copy link
Owner

@michelp michelp commented Oct 7, 2025

No description provided.

svenklemm and others added 2 commits August 8, 2024 07:23
The DO blocks in the version update scripts did not sufficiently
lock down search_path for the format calls allowing injection of
a malicious format function to be executed during upgrades.
@michelp michelp merged commit 229f91f into main Oct 7, 2025
1 check passed
@michelp michelp deleted the svenklemm/format_searchpath branch October 7, 2025 04:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants