• Marc Cornellà's avatar
    fix(lib): fix `omz_urldecode` unsafe eval bug · 6cb41b70
    Marc Cornellà authored
    The `omz_urldecode` function uses an eval to decode the input which can be
    exploited to inject commands. This is used only in the svn plugin and it
    requires a complex process to exploit, so it is highly unlikely to have been
    used by an attacker.
    6cb41b70
Name
Last commit
Last update
.github Loading commit data...
cache Loading commit data...
custom Loading commit data...
lib Loading commit data...
log Loading commit data...
plugins Loading commit data...
templates Loading commit data...
themes Loading commit data...
tools Loading commit data...
.editorconfig Loading commit data...
.gitignore Loading commit data...
.gitpod.Dockerfile Loading commit data...
.gitpod.yml Loading commit data...
CODE_OF_CONDUCT.md Loading commit data...
CONTRIBUTING.md Loading commit data...
LICENSE.txt Loading commit data...
README.md Loading commit data...
SECURITY.md Loading commit data...
oh-my-zsh.sh Loading commit data...