CVE-2026-25598 | step-security harden-runner up to 2.14.1 insufficient logging (GHSA-cpmj-h4f6-r6pq)
A vulnerability was found in step-security harden-runner up to 2.14.1. It has been declared as problematic. Affected is an unknown function. The manipulation results in insufficient logging.
This vulnerability is identified as CVE-2026-25598. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.