GHSA-8fg7-hp93-qhvr: wolfictl leaks GitHub tokens to remote non-GitHub git servers
A git authentication issue allows a local user’s GitHub token to be sent to remote servers other than github.com
.
References
Detect and mitigate GHSA-8fg7-hp93-qhvr with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →