Skip to content

Fix PR branch name and missing secrets in security workflow#34

Merged
Nitr4x merged 2 commits into
feature/enabling-syncfrom
copilot/fix-environment-variable-configuration
Apr 16, 2026
Merged

Fix PR branch name and missing secrets in security workflow#34
Nitr4x merged 2 commits into
feature/enabling-syncfrom
copilot/fix-environment-variable-configuration

Conversation

Copilot AI commented Apr 16, 2026

Copy link
Copy Markdown
Contributor
  • Fix shell injection vulnerability (CWE-78) in security.yml: move all ${{...}} interpolations used in the run: step into an env: block, then reference them as double-quoted environment variables in the shell script

Copilot AI requested a review from Nitr4x April 16, 2026 09:02
@Nitr4x Nitr4x marked this pull request as ready for review April 16, 2026 09:06
@Nitr4x Nitr4x merged commit 43daac4 into feature/enabling-sync Apr 16, 2026
1 of 2 checks passed
@Nitr4x Nitr4x deleted the copilot/fix-environment-variable-configuration branch April 16, 2026 09:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants