Description

Vulnerability in packabe github.com/bytedance/sonic v1.8.8 . file bytedance/sonic/bench.py:26 Improper Neutralization of Special Elements used in an OS Command

How to reproduce

Run veracode tool in gin gonic package

Expectations

not vulnerable

Actual result

vulnerable

Environment

  • go version: 1.20
  • gin version (or commit ref): 1.9,.0, which includes github.com/bytedance/sonic v1.8.8
  • operating system: