Report Surfaces Thousands of Potential Vulnerabilities in GitHub Workflows - DevOps.com
DevSecOps teams on GitHub often utilize insecure workflows, including untrusted input, code execution, and artifacts. 3rd party actions pose risks due to limited cybersecurity expertise.