VYPR

Pipelines-as-Code

by Pipelines As Code

CVEs (1)

  • CVE-2026-54167higAug 20, 2026
    risk 0.38cvss epss

    ## Impact Pipelines-as-Code installations using the GitHub App provider are vulnerable to GitHub App credential exfiltration through the webhook endpoint. Affected versions accepted the `X-GitHub-Enterprise-Host` request header as the GitHub Enterprise API host during GitHub…