-
Notifications
You must be signed in to change notification settings - Fork 16
Open
Labels
bugSomething isn't workingSomething isn't working
Description
Malicious repositories could configure their pre-commit for shell injection here.
Use either validation of paths or (preferably) avoid os.system altogether and call sphinx directly.
When complete, report back in at pre-commit/pre-commit.com#362
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't working