cbcvebase.

Github Enterprise Server vulnerabilities

127 known vulnerabilities affecting github/enterprise_server.

Total CVEs
127
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
CRITICAL20HIGH39MEDIUM64LOW4

Vulnerabilities

Page 2 of 7
CVE-2024-1369P3CRITICALCVSS 9.1fixed in 3.8.15≥ 3.9.0, < 3.9.10+3 more2024-02-13
CVE-2024-1369 [CRITICAL] CWE-20 CVE-2024-1369: A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacke A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance when setting the username and password for collectd configurations. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance an
nvd
CVE-2025-23369P3HIGHCVSS 8.8fixed in 3.12.14≥ 3.13.0, < 3.13.10+6 more2025-01-21
CVE-2025-23369 [HIGH] CWE-347 CVE-2025-23369: An improper verification of cryptographic signature vulnerability was identified in GitHub Enterpris An improper verification of cryptographic signature vulnerability was identified in GitHub Enterprise Server that allowed signature spoofing for unauthorized internal users. Instances not utilizing SAML single sign-on or where the attacker is not already an existing user were not impacted. This vulnerability affected all versions of GitHub Enterprise
nvd
CVE-2022-23740P3HIGHCVSS 8.8v3.7.02022-11-23
CVE-2022-23740 [HIGH] CWE-88 CVE-2022-23740: CRITICAL: An improper neutralization of argument delimiters in a command vulnerability was identifie CRITICAL: An improper neutralization of argument delimiters in a command vulnerability was identified in GitHub Enterprise Server that enabled remote code execution. To exploit this vulnerability, an attacker would need permission to create and build GitHub Pages using GitHub Actions. This vulnerability affected only version 3.7.0 of GitHub Enterprise
nvd
CVE-2026-5921P3HIGHCVSS 8.9fixed in 3.14.26≥ 3.15.0, < 3.15.21+7 more2026-04-21
CVE-2026-5921 [HIGH] CWE-918 CVE-2026-5921: A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that a A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an attacker to extract sensitive environment variables from the instance through a timing side-channel attack against the notebook rendering service. When private mode was disabled, the notebook viewer followed HTTP redirects without revalidating t
nvd
CVE-2024-1374P3CRITICALCVSS 9.1fixed in 3.8.15≥ 3.9.0, < 3.9.10+3 more2024-02-13
CVE-2024-1374 [CRITICAL] CWE-20 CVE-2024-1374: A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacke A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring audit log forwarding. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access
nvd
CVE-2024-1378P3CRITICALCVSS 9.1fixed in 3.8.15≥ 3.9.0, < 3.9.10+3 more2024-02-13
CVE-2024-1378 [CRITICAL] CWE-20 CVE-2024-1378: A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacke A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring SMTP options. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the M
nvd
CVE-2024-1372P3CRITICALCVSS 9.1fixed in 3.8.15≥ 3.9.0, < 3.9.10+3 more2024-02-13
CVE-2024-1372 [CRITICAL] CWE-20 CVE-2024-1372: A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacke A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance when configuring SAML settings. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console w
nvd
CVE-2024-1359P3CRITICALCVSS 9.1fixed in 3.8.15≥ 3.9.0, < 3.9.10+6 more2024-02-13
CVE-2024-1359 [CRITICAL] CWE-20 CVE-2024-1359: A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacke A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance when setting up an HTTP proxy. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console wi
nvd
CVE-2023-23760P3HIGHCVSS 8.8fixed in 3.4.17≥ 3.5.0, < 3.5.14+6 more2023-03-08
CVE-2023-23760 [HIGH] CWE-22 CVE-2023-23760: A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code e A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when building a GitHub Pages site. To exploit this vulnerability, an attacker would need permission to create and build a GitHub Pages site on the GitHub Enterprise Server instance. This vulnerability affected all versions of GitHub Enterprise S
nvd
CVE-2026-4296P3HIGHCVSS 8.8fixed in 3.14.26≥ 3.15.0, < 3.15.21+12 more2026-04-21
CVE-2026-4296 [HIGH] CWE-185 CVE-2026-4296: An incorrect regular expression vulnerability was identified in GitHub Enterprise Server that allowe An incorrect regular expression vulnerability was identified in GitHub Enterprise Server that allowed an attacker to bypass OAuth redirect URI validation. An attacker with knowledge of a first-party OAuth application's registered callback URL could craft a malicious authorization link that, when clicked by a victim, would redirect the OAuth authorizatio
nvd
CVE-2022-23739P3CRITICALCVSS 9.8fixed in 3.3.16≥ 3.4.0, < 3.4.11+3 more2023-01-17
CVE-2022-23739 [CRITICAL] CWE-863 CVE-2022-23739: An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for es An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for escalation of privileges in GraphQL API requests from GitHub Apps. This vulnerability allowed an app installed on an organization to gain access to and modify most organization-level resources that are not tied to a repository regardless of granted pe
nvd
CVE-2024-10007P3CRITICALCVSS 9.1fixed in 3.11.17≥ 3.12.0, < 3.12.11+6 more2024-11-07
CVE-2024-10007 [CRITICAL] CWE-59 CVE-2024-10007: A path collision and arbitrary code execution vulnerability was identified in GitHub Enterprise Serv A path collision and arbitrary code execution vulnerability was identified in GitHub Enterprise Server that allowed container escape to escalate to root via ghe-firejail path. Exploitation of this vulnerability requires Enterprise Administrator access to the GitHub Enterprise Server instance. This vulnerability affected all versions of GitHub Enter
nvd
CVE-2023-46647P3HIGHCVSS 8.8≥ 3.8.0, < 3.8.12≥ 3.9.0, < 3.9.6+4 more2023-12-21
CVE-2023-46647 [HIGH] CWE-269 CVE-2023-46647: Improper privilege management in all versions of GitHub Enterprise Server allows users with authoriz Improper privilege management in all versions of GitHub Enterprise Server allows users with authorized access to the management console with an editor role to escalate their privileges by making requests to the endpoint used for bootstrapping the instance. This vulnerability affected GitHub Enterprise Server version 3.8.0 and above and was fixed in ve
nvd
CVE-2026-9312P3HIGHCVSS 8.2≥ 3.16.0, < 3.16.19≥ 3.17.0, < 3.17.16+10 more2026-05-27
CVE-2026-9312 [HIGH] CWE-918 CVE-2026-9312: A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that a A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload endpoint. By injecting path traversal content into request parameters, an attacker could bypass the intended request
nvd
CVE-2023-22381P3HIGHCVSS 8.8fixed in 3.4.15≥ 3.5.0, < 3.5.12+6 more2023-03-02
CVE-2023-22381 [HIGH] CWE-94 CVE-2023-22381: A code injection vulnerability was identified in GitHub Enterprise Server that allowed setting arbit A code injection vulnerability was identified in GitHub Enterprise Server that allowed setting arbitrary environment variables from a single environment variable value in GitHub Actions when using a Windows based runner. To exploit this vulnerability, an attacker would need existing permission to control the value of environment variables for use with
nvd
CVE-2022-23732P3HIGHCVSS 8.8fixed in 3.1.19≥ 3.2.0, < 3.2.11+2 more2022-04-05
CVE-2022-23732 [HIGH] CWE-23 CVE-2022-23732: A path traversal vulnerability was identified in GitHub Enterprise Server management console that al A path traversal vulnerability was identified in GitHub Enterprise Server management console that allowed the bypass of CSRF protections. This could potentially lead to privilege escalation. To exploit this vulnerability, an attacker would need to target a user that was actively logged into the management console. This vulnerability affected all versio
nvd
CVE-2026-96890P3HIGHCVSS 8.7≥ 3.20.0, < 3.20.*≥ 3.21.0, < 3.21.*+1 more2026-10-06
CVE-2026-96890 [HIGH] CWE-918 CVE-2026-96890: A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that a A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed a repository contributor to cause the appliance to issue requests to attacker-controlled internal hosts, which could be chained to achieve remote code execution on the appliance. The secret scanning validator for GCP service account credentials t
nvd
CVE-2026-19118P3HIGHCVSS 7.5fixed in 3.17.20≥ 3.18.0, < 3.18.14+8 more2026-09-01
CVE-2026-19118 [HIGH] CWE-367 CVE-2026-19118: A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution. Exploitation required an authenticated user with write access to a repository and precise timing of concurrent upload requests. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.22 and was
nvd
CVE-2026-18730P3HIGHCVSS 7.4fixed in 3.17.19≥ 3.18.0, < 3.18.13+8 more2026-09-01
CVE-2026-18730 [HIGH] CWE-918 CVE-2026-18730: A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that a A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause the Manage API to send crafted outbound requests to an attacker-controlled host. An unauthenticated endpoint parsed an attacker-supplied cluster configuration and issued gateway-to-agent requests whose HMAC au
nvd
CVE-2025-11892P3CRITICALCVSS 9.6fixed in 3.14.19≥ 3.15.0, < 3.15.14+8 more2025-11-10
CVE-2025-11892 [CRITICAL] CWE-79 CVE-2025-11892: An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that al An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that allows DOM-based cross-site scripting via Issues search label filter that could lead to privilege escalation and unauthorized workflow triggers. Successful exploitation requires an attacker to have access to the target GitHub Enterprise Server instance
nvd
Github Enterprise Server vulnerabilities | cvebase