Description
Vulnerability in packabe github.com/bytedance/sonic v1.8.8 . file bytedance/sonic/bench.py:26 Improper Neutralization of Special Elements used in an OS Command
How to reproduce
Run veracode tool in gin gonic package
Expectations
not vulnerable
Actual result
vulnerable
Environment
- go version: 1.20
- gin version (or commit ref): 1.9,.0, which includes github.com/bytedance/sonic v1.8.8
- operating system: