GitHub Actions Adds a Checkout Guardrail
GitHub actions/checkout v7 now blocks common pwn-request checkouts that could let unreviewed fork PR code run with repository secrets. Update pinned workflows and audit any manual fetches or custom scripts.
GitHub actions/checkout v7 now blocks common pwn-request checkouts that could let unreviewed fork PR code run with repository secrets. Update pinned workflows and audit any manual fetches or custom scripts.
One panel a day. No spam, unsubscribe with one click.