Skip to content

Command Injection vulnerability in getsentry/sentry-javascript-node-native-stacktrace scripts/clang-format.mjs #18873

@linear

Description

@linear

Repo: getsentry/sentry-javascript-node-native-stacktrace
Confidence: High
Severity: Critical
Weakness: javascript.mcp.mcp-shell-injection-taint.mcp-shell-injection-taint


To reduce risk of accidental information disclosure, we are intentionally not exposing full vulnerability details here
Please see the parent ticket or Semgrep Console for more details: https://semgrep.dev/orgs/sentry/findings/678554835

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions