#695 APP-02: Playwright import allows uncontained browser automation

closed critical Created 2025-12-25 02:56 · Updated 2025-12-25 03:23

Description

Edit
Location: code_loader.py:332. Issue: Playwright can spawn browser processes that bypass multiprocessing isolation, access filesystem, make network requests. Fix: Remove playwright from ALLOWED_IMPORTS or require explicit tenant permission and execute in Docker sandbox.

Comments

Loading comments...

Context

Loading context...

Audit History

View All
Loading audit history...