VendorsGithubenterprise_server3.7.0
Vulnerabilities

Github Enterprise Server 3.7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-46255
Improper Limitation of a Pathname to a Restricted Directory in GitHub Enterprise Server leading to RCE
Published 2022-12-14 · Modified
9.8EPSS 0.015
CVE-2022-23739
Incorrect authorization check in GitHub Enterprise Server leading to escalation of privileges in GraphQL API requests from GitHub Apps using scoped user-to-server tokens
Published 2023-01-17 · Modified
9.8EPSS 0.012
CVE-2022-23740
Improper Neutralization of Argument Delimiters in a Command in GitHub Enterprise Server leading to Remote Code Execution
Published 2022-11-23 · Modified
8.8EPSS 0.012