CVE-2020-26294: OS Command Injection
(updated )
Vela is a Pipeline Automation (CI/CD)
framework built on Linux container technology written in Golang. In addition to upgrading, it is recommended to rotate all secrets.
References
Detect and mitigate CVE-2020-26294 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →