GitHub Action Compromised, Leaking Sensitive Secrets
GitHub Action Compromised, Leaking Sensitive Secrets 2025-03-19 at 17:51 View original post at Safety Detectives Cybersecurity researchers have uncovered a major security breach involving the tj-actions/changed-files GitHub Action, which is used in over 23,000 repositories. The attack, assigned CVE-2025-30066 (CVSS 8.6), exposed CI/CD secrets by modifying the action’s code and updating version tags to reference […]
React to this headline:
GitHub Action Compromised, Leaking Sensitive Secrets Read More »