We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent e24fb58 commit afd0396Copy full SHA for afd0396
main.py
@@ -18,9 +18,9 @@ def func_calls():
18
prep = req.prepare()
19
session.rebuild_proxies(prep, proxies)
20
21
- # Introduce a command injection vulnerability
+ # Fix the command injection vulnerability by setting shell=False
22
user_input = input("Enter a command to execute: ")
23
- command = "ping " + user_input
24
- subprocess.call(command, shell=True)
+ command = ["ping", user_input]
+ subprocess.call(command, shell=False)
25
26
- print("Command executed!")
+ print("Command executed!")
0 commit comments