
CloudPirates-io/helm-charts
Releases1.01K
Frequency6 hours
Last Release
Stars554
This repository contains public Helm Charts for commonly used software
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 10 CRITICAL | — | ||
CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (pull-request.yaml) executes attacker-controlled code from fork pull requests in a privileged context, exposing repository secrets including Docker Hub credentials and tokens without requiring maintainer approval. This issue has been patched via commit fcf9302. | |||
| 10 CRITICAL | — | ||
CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (generate-schema.yaml) exposes sensitive credentials (Personal Access Token and SSH signing key) to fork-controlled code due to unsafe checkout and credential handling practices. This issue has been patched via commit fcf9302. | |||