rhdh-prow-jobs

Warn

Audited by Snyk on Aug 13, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). [scripts/rhdh_prow/openshift_release.py] uses gh api / raw.githubusercontent.com to fetch YAML contents from openshift/release when is_remote is true, and those fetched YAML fields (e.g., cluster_claim.version, test entries, pool metadata) are then parsed and processed by runtime scripts like scripts/list_ocp_test_configs.py and scripts/analyze_coverage.py without requiring selection of specific outsider-authored items.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 13, 2026, 03:30 PM
Issues
1
Security Audit — snyk — rhdh-prow-jobs