Skip to content

[oblt-aw][security] SEC-010 — findings (2026-05-05) #788

@elastic-vault-github-plugin-prod

Description

Security findings (SEC-010)

Analysis date: 2026-05-05
Occurrences: 1

Details

  1. .github/workflows/oblt-aw-ingress.yml — line 209high — zizmor [template-injection]: code injection via template expansion (https://docs.zizmor.sh/audits/#template-injection)

Generated by oblt-aw security detector. Rules: security-scanning-ruleset (SEC-001–SEC-044, aligned with observability-robots#3758).

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions