Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
The Hacker News
2 hours from now

Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection

By info@thehackernews.com (The Hacker News)

Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing internal Jira credentials. The issue was present in .github/workflows/jira_issue.yml, which ran when a

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.