diff options
Diffstat (limited to 'models/release.go')
-rw-r--r-- | models/release.go | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/models/release.go b/models/release.go index 69ce6c13..026ab8ff 100644 --- a/models/release.go +++ b/models/release.go @@ -67,6 +67,8 @@ func createTag(gitRepo *git.Repository, rel *Release) error { return fmt.Errorf("GetBranchCommit: %v", err) } + // Trim '--' prefix to prevent command line argument vulnerability + rel.TagName = strings.TrimPrefix(rel.TagName, "--") if err = gitRepo.CreateTag(rel.TagName, commit.ID.String()); err != nil { return err } |