You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Responding to sev2 escalation. Implementing SecOps guidance to address Potential for Supply Chain Tampering through Upstream Resource Tampering. The root cause is a vulnerability in the upstream repository tj-actions. Mitigating the risk by using the reusable action via a SHA reference so that the action consumed is immutable.
0 commit comments