CloudPirates-io/helm-charts

CloudPirates-io/helm-charts

Releases1.01K
Frequency6 hours
Last Release
Stars554
This repository contains public Helm Charts for commonly used software

CVE History

CVEPublishedCVSS v3CVSS v2
10 CRITICAL

CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (pull-request.yaml) executes attacker-controlled code from fork pull requests in a privileged context, exposing repository secrets including Docker Hub credentials and tokens without requiring maintainer approval. This issue has been patched via commit fcf9302.

10 CRITICAL

CloudPirates Open Source Helm Charts is a collection of Helm charts. Prior to commit fcf9302, a GitHub Actions workflow (generate-schema.yaml) exposes sensitive credentials (Personal Access Token and SSH signing key) to fork-controlled code due to unsafe checkout and credential handling practices. This issue has been patched via commit fcf9302.