Description
Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories. Prior to 0.37.8, 0.39.6, 0.42.1, and 0.48.0, a GitHub App installation token created during webhook processing is not scoped to the repository that triggered the event when the App is installed across multiple repositories. A user with push access to one repository can submit a PipelineRun containing a pipelinesascode.tekton.dev/task remote task annotation that targets a private repository in the same installation. When ScopeTokenToListOfRepos returns no explicit scope, the missing triggering repository ID leaves the token able to access the entire installation. Pipelines-as-Code resolves and inlines the remote private task with that token, disclosing the repository's Tekton definitions. The demonstrated impact is read-only and does not provide write access. This issue is fixed in versions 0.37.8, 0.39.6, 0.42.1, and 0.48.0.
Published: 2026-09-15
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized read access to private repositories via unscoped GitHub App installation token
Action: Immediate Patch
AI Analysis

Impact

A GitHub App installation token that is not limited to the repository that triggered the event can be used by a user who has push permissions to one repository in the same installation to request the execution of a PipelineRun that references a remote task in a different, private repository. When the pipelinesascode.tekton.dev/task annotation points to a private repository, the application resolves and inlines the task using the unscoped token, allowing the remote repository’s Tekton definitions to be read. The vulnerability is an authorization flaw consistent with CWE-269 and CWE-862 and provides read‑only access to private content, but does not grant write capability.

Affected Systems

The issue affects Tekton Pipelines‑as‑Code installations before versions 0.37.8, 0.39.6, 0.42.1, and 0.48.0. It applies when a GitHub App is installed across multiple repositories and an unscoped installation token is created during webhook processing. The problem is specific to the Tekton Pipelines‑as‑Code component and does not apply to other Tekton packages.

Risk and Exploitability

The CVSS score of 6.5 places the vulnerability in the medium severity range, while the EPSS score is < 1%, and the vulnerability is not listed in CISA's KEV catalog. Exploitation requires the attacker to have push access to any repository in the installation and to craft a PipelineRun that targets a remote task in a private repository. Once the token is used, the attacker can read the Tekton manifest files of the private repository but cannot modify them.

Generated by OpenCVE AI on September 17, 2026 at 16:13 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update Tekton Pipelines‑as‑Code to any 0.37.8, 0.39.6, 0.42.1, or 0.48.0 release or later to obtain the fixed token scoping logic
  • If an update cannot be performed immediately, limit the GitHub App to a single repository or remove it from other repositories to prevent cross‑repository token leakage
  • Verify that the token returned by ScopeTokenToListOfRepos is correctly scoped to the triggering repository by reviewing audit logs or adding a test PipelineRun that executes in a restricted repository

Generated by OpenCVE AI on September 17, 2026 at 16:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-6f2p-296r-cc28 Tekton Pipelines-as-Code: Unscoped GitHub App installation token allows unauthorized access to private repositories via remote task resolution
History

Thu, 17 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Tektoncd
Tektoncd pipelines-as-code
Vendors & Products Tektoncd
Tektoncd pipelines-as-code

Thu, 17 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 17 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Tue, 15 Sep 2026 14:45:00 +0000

Type Values Removed Values Added
Description Pipelines-as-Code is a CI/CD system that lets users define Tekton pipelines in source code repositories. Prior to 0.37.8, 0.39.6, 0.42.1, and 0.48.0, a GitHub App installation token created during webhook processing is not scoped to the repository that triggered the event when the App is installed across multiple repositories. A user with push access to one repository can submit a PipelineRun containing a pipelinesascode.tekton.dev/task remote task annotation that targets a private repository in the same installation. When ScopeTokenToListOfRepos returns no explicit scope, the missing triggering repository ID leaves the token able to access the entire installation. Pipelines-as-Code resolves and inlines the remote private task with that token, disclosing the repository's Tekton definitions. The demonstrated impact is read-only and does not provide write access. This issue is fixed in versions 0.37.8, 0.39.6, 0.42.1, and 0.48.0.
Title Pipelines-as-Code: Unscoped GitHub App installation token allows unauthorized access to private repositories via remote task resolution
Weaknesses CWE-269
CWE-862
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

Tektoncd Pipelines-as-code
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-17T14:30:57.237Z

Reserved: 2026-06-11T21:46:52.381Z

Link: CVE-2026-54168

cve-icon Vulnrichment

Updated: 2026-09-17T14:30:49.869Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-15T15:17:17.887

Modified: 2026-09-30T17:43:24.057

Link: CVE-2026-54168

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-15T14:27:44Z

Links: CVE-2026-54168 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T19:59:00Z

Weaknesses