If you can trick a user to run a command tool in a way that ends up causing the user problems, that is not a security problem in that tool.

Just saying. In case you're thinking of submitting such a report about a command line tool in your toolbox.

But surely no sane person would. Right? Right?

0

If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.social/users/bagder/statuses/114476778904471958 on your instance and quote it. (Note that quoting is not supported in Mastodon.)