Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: Azure/login
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: master
Choose a base ref
...
head repository: Azure/login
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: fix/ps-injection-escape-inputs
Choose a head ref
Checking mergeability… Don’t worry, you can still create the pull request.
  • 1 commit
  • 2 files changed
  • 1 contributor

Commits on Jul 30, 2026

  1. Escape single quotes in PowerShell login script inputs

    Apply the same single-quote escape already used for the service principal
    secret to the remaining values interpolated into the generated PowerShell
    login script: tenant-id, subscription-id, client-id, federated token,
    and the AzureStack resourceManagerEndpointUrl.
    
    Factor the escape into a shared helper (escapePSSingleQuoted) so every
    interpolation site uses the same treatment, and add regression tests that
    assert each field is escaped across all supported auth paths.
    
    No behaviour change for valid inputs; legitimate values contain no single quotes.
    MaddyMicrosoft committed Jul 30, 2026
    Configuration menu
    Copy the full SHA
    c3ab00c View commit details
    Browse the repository at this point in the history
Loading