GitHub updated actions/checkout to block common forked pull request attack patterns in GitHub Actions, aiming to reduce pwn request risks tied to privileged workflows that can expose secrets and write tokens.
·