To report a security issue, please email the Tekton vulnerability management team at tekton-vmt[at]googlegroups.com with a description of the issue, the steps you took to create the issue, affected versions, and, if known, mitigations for the issue. Our vulnerability management team will respond within 3 working days of your email. If the issue is confirmed as a vulnerability, we will open a Security Advisory. This project follows a 90 day disclosure timeline.
Security: tektoncd/pipeline
Security
SECURITY.md
-
Pipelines do not validate child UIDsGHSA-w2h3-vvvq-3m53 published
Jul 7, 2023 by wlynchLow
Learn more about advisories related to tektoncd/pipeline in the GitHub Advisory Database