Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.1
CVE-2024-1372
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
CRITICAL 9.1
CVE-2024-1374
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
CRITICAL 9.1
CVE-2024-1378
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
CRITICAL 9.1
CVE-2024-1355
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
CRITICAL 9.1
CVE-2024-1359
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
HIGH 8.0
CVE-2024-1354
A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console t…
Enterprise Server
3.8.15 / 3.9.10+
MEDIUM 6.1
CVE-2024-1084
Cross-site Scripting in the tag name pattern field in the tag protections UI in GitHub Enterprise Server allows a malicious website that requires use…
Enterprise Server
3.8.15 / 3.9.10+
MEDIUM 6.5
CVE-2024-1082
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker to gain unauthorized read permission to files by d…
Enterprise Server
3.8.15 / 3.9.10+
CRITICAL 9.8
CVE-2024-0200EPSS 72%
An unsafe reflection vulnerability was identified in GitHub Enterprise Server that could lead to reflection injection. This vulnerability could lead …
Enterprise Server
3.8.13 / 3.9.8+
HIGH 8.8
CVE-2024-0507EPSS 66%
An attacker with access to a Management Console user account with the editor role could escalate privileges through a command injection vulnerability…
Enterprise Server
3.8.13 / 3.9.8+
CRITICAL 9.8
CVE-2024-22051
CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability. This vulnerability can result in possibly unauthenticated rem…
Cmark Gfm
0.23.4 / 0.28.3.gfm.21+
HIGH 7.5
CVE-2023-6847
An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed a bypass of Private Mode by using a specially crafte…
Enterprise Server
3.9.7 / 3.10.4+
MEDIUM 5.5
CVE-2023-6804
Improper privilege management allowed arbitrary workflows to be committed and run using an improperly scoped PAT. To exploit this, a workflow must ha…
Enterprise Server
3.8.12 / 3.9.7+
MEDIUM 6.5
CVE-2023-6802
An insertion of sensitive information into the log file in the audit log in GitHub Enterprise Server was identified that could allow an attacker to g…
Enterprise Server
3.8.12 / 3.9.7+
MEDIUM 5.7
CVE-2023-6746
An insertion of sensitive information into log file vulnerability was identified in the log files for a GitHub Enterprise Server back-end service tha…
Enterprise Server
3.7.19 / 3.8.12+
HIGH 7.5
CVE-2023-46648
An insufficient entropy vulnerability was identified in GitHub Enterprise Server (GHES) that allowed an attacker to brute force a user invitation to …
Enterprise Server
3.8.12 / 3.9.7+
HIGH 7.0
CVE-2023-46649
A race condition in GitHub Enterprise Server was identified that could allow an attacker administrator access. To exploit this, an organization needs…
Enterprise Server
3.7.19 / 3.8.12+
HIGH 8.8
CVE-2023-46647
Improper privilege management in all versions of GitHub Enterprise Server allows users with authorized access to the management console with an edito…
Enterprise Server
3.8.12 / 3.9.6+
MEDIUM 5.3
CVE-2023-46646
Improper access control in all versions of GitHub Enterprise Server allows unauthorized users to view private repository names via the "Get a check r…
Enterprise Server
3.7.19 / 3.8.12+
MEDIUM 6.5
CVE-2023-23766
An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displaying an incorrect diff in a r…
Enterprise Server
3.6.17 / 3.7.15+
MEDIUM 5.3
CVE-2023-23763
An authorization/sensitive information disclosure vulnerability was identified in GitHub Enterprise Server that allowed a fork to retain read access …
Enterprise Server
3.6.18 / 3.7.16+
MEDIUM 6.5
CVE-2023-23765
An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displaying an incorrect diff in a r…
Enterprise Server
3.6.16 / 3.7.13+
HIGH 7.1
CVE-2023-23764
An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displaying an incorrect diff within…
Enterprise Server
3.7.9 / 3.8.2+
HIGH 7.5
CVE-2023-37463
cmark-gfm is an extended version of the C reference implementation of CommonMark, a rationalized version of Markdown syntax with a spec. Three polyno…
Cmark Gfm
0.29.0.gfm.12+
HIGH 7.8
CVE-2023-36867
Visual Studio Code GitHub Pull Requests and Issues Extension Remote Code Execution Vulnerability
Pull Requests And Issues
0.66.2+
MEDIUM 5.3
CVE-2023-23762
An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displaying an incorrect diff. To do…
Enterprise Server
3.4.18 / 3.5.15+
MEDIUM 5.3
CVE-2023-23761
An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor to modify other users' secret …
Enterprise Server
3.4.18 / 3.5.15+
HIGH 7.5
CVE-2023-24824
cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. A polynomial time complexity issue in cmark-gfm may…
Cmark Gfm
0.29.0.gfm.10.+
HIGH 7.5
CVE-2023-26485
cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. A polynomial time complexity issue in cmark-gfm may…
Cmark Gfm
0.29.0.gfm.10+
HIGH 8.8
CVE-2023-23760
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when building a GitHub Pages site. To ex…
Enterprise Server
3.4.17 / 3.5.14+