Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add option in resource manifest to opt out of parameter value validation #576

Open
SteveL-MSFT opened this issue Oct 21, 2024 · 0 comments
Labels
Issue-Enhancement The issue is a feature or idea Needs Triage
Milestone

Comments

@SteveL-MSFT
Copy link
Member

Summary of the new feature / enhancement

To prevent unintended injection into resource command-lines, we should, by default, validate common cases like semi-colon, quotes, etc... and have the resource author explicit opt out of this behavior if they want the raw content.

Proposed technical implementation details (optional)

No response

@SteveL-MSFT SteveL-MSFT added Issue-Enhancement The issue is a feature or idea Needs Triage labels Oct 21, 2024
@SteveL-MSFT SteveL-MSFT added this to the 3.1-Consider milestone Oct 21, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Issue-Enhancement The issue is a feature or idea Needs Triage
Projects
None yet
Development

No branches or pull requests

1 participant