Skip to content

Reframe Invoke-Expression query as quality guidance#366

Merged
MathiasVP merged 2 commits into
mainfrom
copilot/ps-invoke-expression-reframe-20260615
Jun 17, 2026
Merged

Reframe Invoke-Expression query as quality guidance#366
MathiasVP merged 2 commits into
mainfrom
copilot/ps-invoke-expression-reframe-20260615

Conversation

@chanel-y

Copy link
Copy Markdown

Lower the DoNotUseInvokeExpression metadata to a recommendation and remove the security-severity so the alert is treated as code-quality backlog guidance rather than a high-severity vulnerability

Updates to qhelp and tests to make clear command-injection queries cover security-critical flows

Lower the DoNotUseInvokeExpression metadata to a recommendation and remove the security-severity so the alert is treated as code-quality backlog guidance rather than a high-severity vulnerability. Update qhelp and tests to make clear command-injection queries cover security-critical flows.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

@MathiasVP MathiasVP left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM!

@MathiasVP MathiasVP enabled auto-merge June 17, 2026 10:39
@MathiasVP MathiasVP merged commit f4bc4ba into main Jun 17, 2026
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants