generated from sigstore/sigstore-project-template
-
Notifications
You must be signed in to change notification settings - Fork 62
Security: sigstore/gitsign
Security Navigation
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Use of incorrect Rekor entries during verificationGHSA-8pmp-678w-c8xx published
Nov 4, 2024 by wlynchLow -
Rekor public keys fetched from upstream API instead of local TUF client.GHSA-xvrc-2wvh-49vc published
Nov 10, 2023 by wlynchModerate