Trail of Bits

Eclipse JKube

Type

Security review

Client

The Open Source Technology Improvement Fund

Date

2023-05

Domain

AppSec

Effort

5 wks

Section

Technology Product Reviews

Trail of Bits's security review of The Open Source Technology Improvement Fund (May 2023) identified 2 issues: 1 low, and 1 informational.

Findings · 2

  1. 1 Insecure defaults in generated artifacts Informational
  2. 2 Risk of command line injection from secret Low

Findings extracted from the published report PDF. See the full report below for details and remediation.

Related