Skip to content

fix(security): address yaml injection and symlink credential overwrites in plugin scripts - #84711

Open
alifakbxr wants to merge 1 commit into
anthropics:mainfrom
alifakbxr:fix/76580-security-plugin-symlinks
Open

fix(security): address yaml injection and symlink credential overwrites in plugin scripts#84711
alifakbxr wants to merge 1 commit into
anthropics:mainfrom
alifakbxr:fix/76580-security-plugin-symlinks

Conversation

@alifakbxr

Copy link
Copy Markdown

Fixes #76580. Added defensive checks to prevent yaml injection and symlink credential overwrite.

This was referenced Aug 7, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

security: plugin scripts allow YAML injection and symlink-based credential overwrite

1 participant