Skip to content

security: sanitize operational log values - #1

Merged
chen21019 merged 1 commit into
mainfrom
security/log-injection-20260826
Aug 26, 2026
Merged

chen21019 merged 1 commit into
mainfrom
security/log-injection-20260826

Conversation

@chen21019

Copy link
Copy Markdown

Result

Normalize CLI errors, paths, arguments, runtime IDs, and file names before operational logging. Mount behavior is unchanged.

Verification

  • Linux amd64 go test -c cross-compilation passed
  • Windows cannot execute this Linux-only package because the existing implementation uses syscall.Mount; the PR CI runs the new unit test on Linux
  • git diff --check

@chen21019
chen21019 requested a review from a team as a code owner August 26, 2026 06:48
@chen21019
chen21019 merged commit 0dd2cfb into main Aug 26, 2026
4 checks passed
@chen21019
chen21019 deleted the security/log-injection-20260826 branch August 26, 2026 06:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant