CVE-2025-47775
14.05.2025, 16:15
Bullfrog is a GithHb Action to block unauthorized outbound traffic in GitHub workflows. Prior to version 0.8.4, using tcp breaks blocking and allows DNS exfiltration. This can result in sandbox bypass. Version 0.8.4 fixes the issue.Enginsight
Vendor | Product | Version |
---|---|---|
bullfrogsec | bullfrog | 𝑥 < 0.8.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References