Skip to content

Workflows disabled pending vulnerability investigation #216

@joeyparrish

Description

@joeyparrish

A vulnerable workflow exposed this repo to risk of manipulation. All GitHub Actions have been disabled pending investigation of this vulnerability.

Existing releases, tags, and branches are clean and have not been poisoned. Binaries released via PyPi are also clean.

Metadata

Metadata

Assignees

Labels

priority: P1Big impact or workaround impractical; resolve before feature releasestatus: archivedArchived and locked; will not be updatedtype: CIAn issue with our continuous integration teststype: vulnerabilityA security issue with the project, the CI, or the repo

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions