rhdh-prow-jobs
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). [scripts/rhdh_prow/openshift_release.py] uses
gh api/raw.githubusercontent.comto fetch YAML contents fromopenshift/releasewhenis_remoteis true, and those fetched YAML fields (e.g.,cluster_claim.version, test entries, pool metadata) are then parsed and processed by runtime scripts likescripts/list_ocp_test_configs.pyandscripts/analyze_coverage.pywithout requiring selection of specific outsider-authored items.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata