#394 MEDIUM: Sandbox code injection via triple-quote escape bypass

closed medium Created 2025-12-11 22:21 · Updated 2025-12-16 20:44

Description

Edit
sandbox.py:285 - User code escaped with simple replace for triple quotes. Edge cases like backslash-triple-quote may bypass. Fix: Use base64 encoding for code transport to container.

Comments

Loading comments...

Context

Loading context...

Audit History

View All
Loading audit history...