Skip to content

Use env to pass values from workflow expressions into the shell safely.#3469

Merged
shobhitagarwal1612 merged 2 commits into
masterfrom
vulnerability-todo-to-issue
Jan 23, 2026
Merged

Use env to pass values from workflow expressions into the shell safely.#3469
shobhitagarwal1612 merged 2 commits into
masterfrom
vulnerability-todo-to-issue

Conversation

@shobhitagarwal1612

@shobhitagarwal1612 shobhitagarwal1612 commented Jan 22, 2026

Copy link
Copy Markdown
Member

Resolves the vulnerability in the todo-to-issue github action workflow.

image

@gino-m PTAL?

@auto-assign auto-assign Bot requested a review from sufyanAbbasi January 22, 2026 17:22
@gemini-code-assist

Copy link
Copy Markdown
Contributor

Note

Gemini is unable to generate a summary for this pull request due to the file types involved not being currently supported.

@codecov

codecov Bot commented Jan 22, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 70.02%. Comparing base (c510281) to head (4ac140c).
⚠️ Report is 1 commits behind head on master.

Additional details and impacted files
@@            Coverage Diff            @@
##             master    #3469   +/-   ##
=========================================
  Coverage     70.02%   70.02%           
  Complexity     1604     1604           
=========================================
  Files           322      322           
  Lines          8646     8646           
  Branches        949      949           
=========================================
  Hits           6054     6054           
  Misses         2017     2017           
  Partials        575      575           
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@gino-m gino-m left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice fix, thanks!

@shobhitagarwal1612 shobhitagarwal1612 merged commit b2c08e5 into master Jan 23, 2026
7 checks passed
@shobhitagarwal1612 shobhitagarwal1612 deleted the vulnerability-todo-to-issue branch January 23, 2026 03:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants