VendorsGithubenterprise_serverany version
Vulnerabilities

Github Enterprise Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

117CVEs
CVE-2024-4985
An authentication bypass vulnerability was present in the GitHub Enterprise Server (GHES) when utilizing SAML single sign-on authentication with the optional encrypted assertions feature. This vulnerability allowed an attacker to forge a SAML response to provision and/or gain access to a user with site administrator privileges. Exploitation of this vulnerability would allow unauthorized access to the instance without requiring prior authentication. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.13.0 and was fixed in versions 3.9.15, 3.10.12, 3.11.10 and 3.12.4. This vulnerability was reported via the GitHub Bug Bounty program.
Published 2024-05-20 · Analyzed
10.0EPSS 0.026
CVE-2024-0200
Unsafe Reflection in Github Enterprise Server leading to Command Injection
Published 2024-01-16 · Modified
9.8EPSS 0.717
CVE-2024-6800
An XML signature wrapping vulnerability was present in GitHub Enterprise Server (GHES) when using SAML authentication with specific identity providers utilizing publicly exposed signed federation metadata XML. This vulnerability allowed an attacker with direct network access to GitHub Enterprise Server to forge a SAML response to provision and/or gain access to a user with site administrator privileges. Exploitation of this vulnerability would allow unauthorized access to the instance without requiring prior authentication. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.14 and was fixed in versions 3.13.3, 3.12.8, 3.11.14, and 3.10.16. This vulnerability was reported via the GitHub Bug Bounty program.
Published 2024-08-20 · Analyzed
9.8EPSS 0.015
CVE-2022-23739
Incorrect authorization check in GitHub Enterprise Server leading to escalation of privileges in GraphQL API requests from GitHub Apps using scoped user-to-server tokens
Published 2023-01-17 · Modified
9.8EPSS 0.012
CVE-2021-22869
Improper access control in GitHub Enterprise Server allows self-hosted runners to execute outside their control group
Published 2021-09-24 · Modified
9.8EPSS 0.012
CVE-2026-8034
Server-side request forgery vulnerability in GitHub Enterprise Server notebook viewer via URL parser confusion
Published 2026-05-07 · Analyzed
9.8EPSS 0.005
CVE-2025-11892
DOM-based Cross-Site Scripting was identified in GitHub Enterprise Server Issues search allows privilege escalation and unauthorized workflow triggers
Published 2025-11-10 · Analyzed
9.6EPSS 0.007
CVE-2026-5845
Improper authorization fallback allows scoped user-to-server token installation escape in GitHub Enterprise Server
Published 2026-04-21 · Analyzed
9.6EPSS 0.003
CVE-2024-9487
An Improper Verification of Cryptographic Signature vulnerability was identified in GitHub Enterprise Server that allowed SAML SSO authentication to be bypassed when the encrypted assertions feature was enabled
Published 2024-10-10 · Analyzed
9.5EPSS 0.256
CVE-2026-9312
Server-Side Request Forgery vulnerability in GitHub Enterprise Server allowed access to internal services via path traversal in upload endpoint
Published 2026-05-27 · Modified
9.2EPSS 0.066
CVE-2024-1374
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.026
CVE-2024-1355
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.024
CVE-2024-1378
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.023
CVE-2024-1369
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.023
CVE-2024-1372
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.023
CVE-2024-1359
Command injection vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Mangement Console
Published 2024-02-13 · Modified
9.1EPSS 0.023
CVE-2024-2443
Improper input validation vulnerability was identified in GitHub Enterprise Server that allowed privilege escalation in the Management Console
Published 2024-03-20 · Analyzed
9.1EPSS 0.021
CVE-2024-10007
Pre-Receive Hook Path Collision Vulnerability in GitHub Enterprise Server Allowing Privilege Escalation
Published 2024-11-07 · Analyzed
9.1EPSS 0.008
CVE-2026-17556
Path traversal in GitHub Enterprise Server allowed unauthenticated deletion of instance storage via the X-GitHub-Request-Id header
Published 2026-08-05 · Analyzed
9.1EPSS 0.005
CVE-2026-0573
Improper Handling of HTTP Redirects vulnerability was identified in GitHub Enterprise Server that allowed leaking of authorization token and enabled remote code execution
Published 2026-02-18 · Analyzed
9.0EPSS 0.007
CVE-2026-5921
Server-Side Request Forgery in GitHub Enterprise Server allowed extraction of sensitive environment variables via timing side-channel attack
Published 2026-04-21 · Analyzed
8.9EPSS 0.004
CVE-2024-0507
Privilege Escalation by Code Injection in the Management Console in GitHub Enterprise Server
Published 2024-01-16 · Modified
8.8EPSS 0.658
CVE-2026-3854
Remote code execution via git push option injection in GitHub Enterprise Server
Published 2026-03-10 · Modified
8.8EPSS 0.400
CVE-2021-22864
Unsafe configuration options in GitHub Pages leading to remote code execution on GitHub Enterprise Server
Published 2021-03-23 · Modified
8.8EPSS 0.025
CVE-2021-41599
Improper control flow in GitHub Enterprise Server hosted Pages leads to remote code execution
Published 2022-02-17 · Modified
8.8EPSS 0.022
CVE-2022-23734
Deserialization of Untrusted Data vulnerability in GitHub Enterprise Server leading to Remote Code Execution
Published 2022-10-19 · Modified
8.8EPSS 0.020
CVE-2022-46256
Path traversal in GitHub Enterprise Server leading to remote code execution in GitHub Pages
Published 2022-12-14 · Modified
8.8EPSS 0.019
CVE-2022-23732
Path traversal in GitHub Enterprise Server management console leading to a bypass of CSRF protections
Published 2022-04-05 · Modified
8.8EPSS 0.017
CVE-2025-23369
Improper Verification of Cryptographic Signature in GitHub Enterprise Server Allows Signature Spoofing by Improper Validation
Published 2025-01-21 · Analyzed
8.8EPSS 0.016
CVE-2021-41598
UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user
Published 2022-01-25 · Modified
8.8EPSS 0.012
CVE-2021-22866
UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user resources
Published 2021-05-14 · Modified
8.8EPSS 0.010
CVE-2023-23760
Path traversal in GitHub Enterprise Server leading to remote code execution
Published 2023-03-08 · Modified
8.8EPSS 0.010
CVE-2023-22381
Code injection in GitHub Enterprise Server leading to arbitrary environment variables in GitHub Actions
Published 2023-03-02 · Modified
8.8EPSS 0.008
CVE-2023-46647
Improper Privilege Management in GitHub Enterprise Server management console leads to privilege escalation
Published 2023-12-21 · Modified
8.8EPSS 0.006
CVE-2026-76851
Server-Side Request Forgery vulnerability in GitHub Enterprise Server allowed remote code execution via network access from pre-receive hooks to internal services
Published 2026-09-01 · Analyzed
8.8EPSS 0.005
CVE-2026-4296
Incorrect Regular Expression vulnerability in GitHub Enterprise Server allowed unauthorized access to user accounts via OAuth callback URL validation bypass
Published 2026-04-21 · Analyzed
8.8EPSS 0.004
CVE-2024-8810
Privilege Management vulnerability was identified in GitHub Enterprise Server that allowed GitHub Apps to grant themselves write access
Published 2024-11-07 · Analyzed
8.7EPSS 0.004
CVE-2025-14046
Insufficient HTML Sanitization Allows User-Controlled DOM Elements to Overwrite Server-Initialized Data Islands and Trigger Unintended Server-Side POST Requests
Published 2025-12-11 · Analyzed
8.6EPSS 0.004
CVE-2025-13744
Improper Neutralization of Input During Web Page Generation vulnerability was identified in GitHub Enterprise Server that allowed rendering of malicious HTML
Published 2026-01-06 · Analyzed
8.4EPSS 0.002
CVE-2023-46648
Insufficient Entropy in GitHub Enterprise Server Management Console Invitation Token
Published 2023-12-21 · Modified
8.3EPSS 0.007
1 / 3Next →