WhisperX tag archive

#workflow_dispatch

This page collects WhisperX intelligence signals tagged #workflow_dispatch. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-05-03 20:54:07 · GitHub Issues

1. GitHub Actions Workflow Exposes API Keys via Unvalidated Shell Injection

A critical command injection vulnerability has been identified in the `regenerate-image.yml` GitHub Actions workflow, allowing any collaborator with `workflow_dispatch` permissions to execute arbitrary shell commands in the runner environment. The flaw stems from direct interpolation of unsanitized workflow inputs into...