CVE-2020-15228 PUBLISHED CVSS 3.5 LOW

Environment Variable Injection in GitHub Actions

EPSS 0.32% · 55.0th percentile

Risk Scores

CVSS v3.1
3.5
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N
EPSS Score
0.32%
55.0th percentile

Affected Products

VendorProductVersions
actionscore0, 0, 0
toolkit_projecttoolkit0, 0, 0
Azurefunctions
actionstoolkit< 1.2.6, < 1.2.6, < 1.2.6
Salesforceflow
Oracle Cloudfunctions

Timeline

References

Open in Interactive Console →