Wazuh disclosed CVE-2026-67308, a critical shell injection flaw in its GitHub Actions workflows that allows arbitrary command execution when attackers submit pull requests from public forks with a crafted VERSION.json file. The vulnerability affects workflows prior to commit 44bf114 and stems from attacker-controlled input being written to GITHUB_ENV and later interpolated directly into shell run steps, enabling shell metacharacters to execute through bash.
The issue is classified as CWE-78 and has been rated CVSS 10.0 in public reporting, with the highest risk on self-hosted runners where exposed secrets may include GITHUB_TOKEN and AWS credentials. Wazuh remediated the flaw in commit 44bf114 and added hardening to additional workflows; public reporting said no active exploitation had been observed at publication, but noted the attack is low complexity and reachable through the project's public CI/CD pull request workflow.

Trace attribution and downstream blast radius.
2 events from the most recent confirmed update back to the earliest known activity.
The CVE record states that the new CVE for the Wazuh GitHub Actions shell injection issue was received by disclosure@vulncheck.com. The vulnerability concerns command execution via crafted VERSION.json content in pull requests from public forks.
Wazuh remediated the GitHub Actions shell injection vulnerability tracked as CVE-2026-67308 in commit 44bf114, which is identified as unaffected. The fix also included additional workflow hardening beyond the direct remediation.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution and downstream blast radius, and whether this package or vendor reaches your builds.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.