Skip to content

@hulumi/policies bypasses IAM-role policy checks when the role trusts multiple OIDC providers

High severity GitHub Reviewed Published May 20, 2026 in kerberosmansour/hulumi • Updated Jun 10, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts