GitHub Actions leaking secrets when Miri output is cached

The Rust Security Response Team reports that Miri stores environment variables in target/, where they can persist in caches. Combined with GitHub Actions caching behavior, this can expose secrets to pull requests, though the issue is not described as a vulnerability on its own.

Coverage 1 publisher

  1. Rust Blog

    GitHub Actions leaking secrets when Miri output is cached

Articles stay on their publishers’ sites; each link opens the original.