poutine
GitHub Toggle Dark/Light/Auto mode Toggle Dark/Light/Auto mode Toggle Dark/Light/Auto mode Back to homepage

Build Component with a Known Vulnerability used

Description

A CI component was found to be vulnerable to a publicly known security vulnerability from the Open Source Vulnerability Database (OSV)

GitHub Actions

GitHub Actions workflows using third-party GitHub Actions with known vulnerabilities could compromise the security of the workflow and the repository.

Remediation

Upgrade the affected component to a non-vulnerable version or remove the component from the workflow.

See Also