1.
Wiz Research details a second supply chain attack on reviewdog/action-setup (CVE-2025-30154) that may have enabled the tj-actions/changed-files compromise, with links to Coinbase-targeting activity.
Skip to content
Curated 1 security research writeups, vulnerability advisories and exploitation analyses for CVE-2025-30154.