Skip to content
This repository was archived by the owner on Jun 16, 2025. It is now read-only.
This repository was archived by the owner on Jun 16, 2025. It is now read-only.

BUG]: Unclaimed s3 bucket at GH forked repo: https://github.com/GoodRx/moto/blob/d3df810065c9c453d40fcc971f9be6b7b2846061/moto/awslambda/models.py#L107 #13

Open
@bhartisaurav

Description

@bhartisaurav

Hello team,

I know it is not a correct place to report it but i couldn't find any.

I found an unclaimed s3 bucket at GH forked repo : moto . This repo was updated 9 years ago, i think is no longer in use but parent repo has updated/or removed the s3 bucket link i.e:

[s3 bucket] : s3://lambda-functions.aws.amazon.com

Image

Image

If you are no longer using it, then you can choose to archive it or update the bucket link. This issue can easily lead to XSS to arbitrary code injection at users end if user try to access even by mistake.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions