Proof of concept for GitHub Actions command injection. When the 'feature' label is added, the workflow runs and the $(id) in the title executes as a shell command.
Proof of concept for GitHub Actions command injection.
When the 'feature' label is added, the workflow runs and the $(id) in the title executes as a shell command.