
Popular GitHub Action tj-actions/changed-files Compromised
CybersecurityHackingVulnerabilitiesSupplyChain
The GitHub repository tj-actions/changed-files, a popular action used to detect modified files in GitHub workflows, has been compromised. Users are informed that versions 24 to 26 of this action contain malicious code. This code allows attackers to steal secrets and execute arbitrary code on affected systems.