Jorge
Results
22
issues of
Jorge
Branch names are user-controlled values that can store special characters like `;` allowing for command injection. By storing the branch names as environment variables, the interpolation is not done at...
The same way the CodeQL Action supports a [`config-file`](https://github.com/github/codeql-action/blob/main/init/action.yml#L41), it would be great for this Action to support the same. This way, if there are many patterns, the workflow would...
enhancement