CVE-2025-30154

⚠ KEVEPSS 34.6%

reviewdog/action-setup GitHub Action Embedded Malicious Code Vulnerability

Added to CISA KEV: 3/24/2025

Description

reviewdog action-setup GitHub Action contains an embedded malicious code vulnerability that dumps exposed secrets to Github Actions Workflow Logs.

Affected packages (0)

No package mapping in OSV.