vtcode 0.123.7

A Rust-based terminal coding agent with modular architecture supporting multiple LLM providers
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
id: no-path-traversal
valid:
  - |
      File.basename(user_input)
invalid:
  - |
      File.join(Rails.root, params[:file])
  - |
      Rails.root.join("data", user_input)
  - |
      send_file params[:path]
  - |
      File.join(Rails.root, "data", "fixed.txt")
  - |
      send_file Rails.root.join("public", "report.pdf")