Permissive Regular Expression in GitHub CLI - #VU152995
Published: September 30, 2026
Vulnerability details
The vulnerability allows a remote user to cause integrity impacts in downstream automation.
The vulnerability exists due to a permissive regular expression in the `gh attestation verify` signer-workflow SAN matcher when verifying an attestation with the `--signer-workflow` option. A remote user can add and run a workflow whose path extends the pinned workflow value to cause integrity impacts in downstream automation.
Exploitation requires automation to treat successful attestation verification as authorization.