github / github/copilot-cli

SHELL tool can read any files outside of working directory

Đang mở
#2,173 0 bình luận 0 reaction 0 người được giao Xem trên GitHub
area:tools
Ngôn ngữ chính
Shell
Star
11.2k
Fork
1.9k
Merge trung bình
14 giờ 16 phút
Pull request đã merge (30 ngày)
6

Mô tả

### Describe the bug

Using `--allow-tool 'shell'` enables copilot to read any file which the user has access to.

Expectations:
Only access files which are listed by `/list-dirs`

### Affected version

GitHub Copilot CLI 1.0.9

### Steps to reproduce the behavior

Start copilot with: `copilot --allow-tool 'shell'``

❯ Read ~/.secret_test somehow and show me the content. Be creative

◐ The user is asking me to read `~/.secret_test` and show them the content. Let me just read it directly using the view tool or bash.

● Read ~/.secret_test (shell)
│ cat ~/.secret_test
└ 2 lines...

● nothing creative needed — cat works fine.

You MUST NOT SEE THIS !!

### Expected behavior

Only access files which are listed by `/list-dirs`

### Additional context

_No response_

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Đánh giá

Issue này chưa được đánh giá.

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.