Skip to content

Command Injection vulnerability in getsentry/sentry-javascript-profiling-node-binaries scripts/clang-format.js #18807

@linear

Description

@linear

Repo: getsentry/sentry-javascript-profiling-node-binaries
Confidence: High
Severity: Critical
Weakness: javascript.mcp.mcp-shell-injection-taint.mcp-shell-injection-taint


To reduce risk of accidental information disclosure, we are intentionally not exposing full vulnerability details here
Please see the parent ticket or Semgrep Console for more details: https://semgrep.dev/orgs/sentry/findings/675573472

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions