High severity8.7NVD Advisory· Published Apr 4, 2025· Updated Apr 15, 2026
CVE-2025-32111
CVE-2025-32111
Description
The Docker image from acme.sh before 40b6db6 is based on a .github/workflows/dockerhub.yml file that lacks "persist-credentials: false" for actions/checkout.
Patches
240b6db6a2715a1de13657e79Vulnerability mechanics
Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
3News mentions
0No linked articles in our index yet.