commit 5efbf02cf0e5885214afebbd9592ed1f9b039233 from: Sergey Bronnikov date: Sun Feb 05 09:39:01 2023 UTC rules/lua: add io.popen to unsafe functions Closes #35 commit - 24d1962e16b143c4194f31f28470100ab2f3887c commit + 5efbf02cf0e5885214afebbd9592ed1f9b039233 blob - a89927e67af43c78d52dd819342ffd3d0d9645bb blob + 45b1408271581e31ff87b248f7d0dfd67b68a9db --- rules/lua/basic/unsafe_function.lua +++ rules/lua/basic/unsafe_function.lua @@ -2,6 +2,9 @@ os.execute("") -- ruleid: unsafe_function +io.popen("") + +-- ruleid: unsafe_function load("") -- ruleid: unsafe_function blob - 41df471c2bcc3515c9b477db9c61407c583ed6b9 blob + bd1afc4adc226449278d449899d5ba3b08d52321 --- rules/lua/basic/unsafe_function.yaml +++ rules/lua/basic/unsafe_function.yaml @@ -2,6 +2,7 @@ rules: - id: unsafe_function pattern-either: - pattern: os.execute(...) + - pattern: io.popen(...) - pattern: loadstring(...) - pattern: load(...) - pattern: loadfile(...)