• Gamma@beehaw.org
    link
    fedilink
    English
    arrow-up
    5
    ·
    18 days ago

    [The action] was set up in a way where text from a PR comment could be passed directly into a shell command, so whatever the comment said, the runner would execute it.

    Oh, lol

  • Lucy :3@feddit.org
    link
    fedilink
    arrow-up
    1
    ·
    17 days ago

    I think we should just all stop using anything that uses SlopHub for its primary workflow.