ignore warning from bandit for using shell=
The functions in this library are meant to wrap subprocess, and sometimes we do want to allow passing shell=True, so mark that line with nosec to ignore B604. Change-Id: Iab676449e543a4fdabee62efa9283940d30e3398 Signed-off-by: Doug Hellmann <doug@doughellmann.com>
This commit is contained in:
parent
a7fff56c6d
commit
9a4dea3600
|
@ -386,7 +386,7 @@ def execute(*cmd, **kwargs):
|
||||||
stderr=_PIPE,
|
stderr=_PIPE,
|
||||||
close_fds=close_fds,
|
close_fds=close_fds,
|
||||||
preexec_fn=on_preexec_fn,
|
preexec_fn=on_preexec_fn,
|
||||||
shell=shell,
|
shell=shell, # nosec:B604
|
||||||
cwd=cwd,
|
cwd=cwd,
|
||||||
env=env_variables)
|
env=env_variables)
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue