From dac6efbaff9a711074edeef9968dc29bad1324eb Mon Sep 17 00:00:00 2001 From: Christian Segundo Date: Sun, 17 Sep 2023 13:35:17 +0200 Subject: [PATCH] fix(dockerfile): bash injection on run instructions --- queries/dockerfile/injections.scm | 3 ++- .../dockerfile/bash-on-run-instructions.dockerfile | 6 ++++++ 2 files changed, 8 insertions(+), 1 deletion(-) create mode 100644 tests/query/injections/dockerfile/bash-on-run-instructions.dockerfile diff --git a/queries/dockerfile/injections.scm b/queries/dockerfile/injections.scm index 2a48ec4f6..0eb9ffdf2 100644 --- a/queries/dockerfile/injections.scm +++ b/queries/dockerfile/injections.scm @@ -2,4 +2,5 @@ (#set! injection.language "comment")) ((shell_command) @injection.content - (#set! injection.language "bash")) + (#set! injection.language "bash") + (#set! injection.include-children)) diff --git a/tests/query/injections/dockerfile/bash-on-run-instructions.dockerfile b/tests/query/injections/dockerfile/bash-on-run-instructions.dockerfile new file mode 100644 index 000000000..d25020494 --- /dev/null +++ b/tests/query/injections/dockerfile/bash-on-run-instructions.dockerfile @@ -0,0 +1,6 @@ +FROM foo +RUN bar +# ^ bash +RUN \ + baz +# ^ bash