test: multi-pass pipeline with linter-rule-judge #707
Annotations
3 errors and 1 warning
|
Arbitrary Code Execution via eval():
src/config/loader.ts#L133
The evaluateConfigExpression function uses eval() with user-provided input, allowing arbitrary JavaScript code execution.
|
|
Arbitrary Code Execution via Function Constructor:
src/config/loader.ts#L137
The createDynamicHandler function uses the Function constructor with user-provided code, allowing arbitrary JavaScript code execution.
|
|
Command Injection in runConfigScript:
src/config/loader.ts#L123
The runConfigScript function uses execSync with unvalidated string interpolation of scriptName, allowing command injection via path traversal or shell metacharacters.
|
|
e2e
No files were found with the provided path: playwright-report/. No artifacts will be uploaded.
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
dist
Expired
|
39.4 MB |
sha256:7fdb36da6b462ff7755d6668f0299501d3c2c12def51bd931c5fecdf1219a88a
|
|
|
docker-image
Expired
|
1.09 GB |
sha256:4365ea70ecea47cb19824cbcdcf0999e21ba5fbfb19a8e7793b9ff0c9a1ee1fd
|
|
|
gricha~perry~4EI6WL.dockerbuild
|
73.9 KB |
sha256:241a45e9b942745ba5caf5dec337a09a8808191c7b4b22e310331e79f3b4f89e
|
|
|
gricha~perry~HSINMI.dockerbuild
|
40 KB |
sha256:c819a449153c8dacd33337dbb341b1a7083f25f5955eab5632c45bde955face0
|
|
|
playwright-report
Expired
|
197 KB |
sha256:ac96715353f0ffe31934fc62044db87c753fdcf1b5d52cdf9763cc9690b1f18d
|
|