VYPR

GitHub Actions package

fish-shop/syntax-check

pkg:github/fish-shop/syntax-check

Vulnerabilities (1)

  • CVE-2024-42482Aug 12, 2024
    affected < 1.6.12fixed 1.6.12

    fish-shop/syntax-check is a GitHub action for syntax checking fish shell files. Improper neutralization of delimiters in the `pattern` input (specifically the command separator `;` and command substitution characters `(` and `)`) mean that arbitrary command injection is possible