What is CVE-2026-11325?
This CVE describes a remote code execution vulnerability in the `src/index.ts` file of an archived Cloudflare repository. It can be exploited via specific GitHub Actions workflow configurations, potentially exposing workflow secrets.
Azərbaycanca: Bu CVE, Cloudflare-in arxivləşdirilmiş reposunda `src/index.ts` faylında aşkarlanmış uzaqdan kod icrası (RCE) zəifliyidir. Xüsusi GitHub Actions konfiqurasiyaları vasitəsilə istismar edilə bilər. İstismar uğurlu olarsa, iş axını sirlərinin ifşasına səbəb ola bilər.
FAQ2
In which file was the CVE-2026-11325 vulnerability discovered?
This RCE vulnerability was discovered in the `src/index.ts` file of an archived Cloudflare repository.
How can CVE-2026-11325 be exploited?
It can be exploited via specific GitHub Actions workflow configurations.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.