[CVE-2025-30066] GitHub Action tj-actions/changed-files supply chain attack: everything you need to know
wiz.io | incident | CVE-2025-30066 | #supply-chain | #github-actions | #ci-cd | #secrets-management | #incident | #cve-2025-30066
Summary
Everything to know about the tj-actions/changed-files supply chain attack (CVE-2025-30066): how the compromise leaked CI secrets in public repo logs, attribution clues, and mitigation guidance.
- Published
- Collected
Skip to content