Skip to content

Conversation

@frizzr
Copy link

@frizzr frizzr commented Sep 22, 2023

We were seeing other Github Actions well downstream from here being reported by Dependabot with this vulnerability:

https://nvd.nist.gov/vuln/detail/CVE-2022-25883

@frizzr frizzr requested a review from a team as a code owner September 22, 2023 15:47
@frizzr
Copy link
Author

frizzr commented Sep 22, 2023

I did mention that this could possibly be included in #1526 instead of here.

@takost
Copy link
Contributor

takost commented Sep 26, 2023

I did mention that this could possibly be included in #1526 instead of here.

I included your change in my PR

@sjvdehnv
Copy link

sjvdehnv commented Oct 8, 2023

كنا نرى إجراءات Github أخرى في اتجاه مجرى النهر يتم الإبلاغ عنها بواسطة Dependabot بهذه الثغرة الأمنية:

https://nvd.nist.gov/vuln/detail/CVE-2022-25883

لقد ذكرت أنه من الممكن إدراج هذا في رقم 1526 بدلاً من هنا.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants