Repository navigation
Security: ai-action/code-ollama
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
code-ollama: ReDoS in grep_search Node.js fallback freezes agent (model-controlled RegExp, no timeout)GHSA-jhqr-q7vm-2cg4 published
Oct 6, 2026 by remarkablemarkModerate -
Windows OS command injection via MCP OAuth authorization URL in openUrl()GHSA-x6wv-3hjm-9qp9 published
Oct 3, 2026 by remarkablemarkHigh -
`grep_search` Command Injection via Unescaped `$()` Shell Substitution (CWE-78)GHSA-456v-xq2p-r4cj published
Jun 24, 2026 by remarkablemarkHigh
Learn more about advisories related to ai-action/code-ollama in the GitHub Advisory Database