Remove shell=True from subprocess.Popen to Mitigate Security Risk (#28299)

Remove shell=True from subprocess.Popen to mitigate security risk
This commit is contained in:
Avimanyu Bandyopadhyay 2024-01-08 20:03:28 +05:30 committed by GitHub
parent 87a6cf41d0
commit 2272ab57a9
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 1 deletions

View File

@ -56,7 +56,7 @@ def export_with_optimum(args):
f"--framework {args.framework}" if args.framework is not None else "",
f"{args.output}",
]
proc = subprocess.Popen(" ".join(cmd_line), stdout=subprocess.PIPE, shell=True)
proc = subprocess.Popen(cmd_line, stdout=subprocess.PIPE)
proc.wait()
logger.info(