Loading HuntDB...

github

12 Products 108 CVEs

CVE Severity Distribution (All Time)

Critical
7
High
19
Medium
31
Low
6

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 10 CVEs

Recent CVEs

View all
CVE-2024-53858 MEDIUM 9 months, 1 week ago

The gh cli is GitHub’s official command line tool. A security vulnerability has been identified in the GitHub CLI that could leak authentication toke…

CVE-2024-53859 MEDIUM 9 months, 1 week ago

go-gh is a Go module for interacting with the `gh` utility and the GitHub API from the command line. A security vulnerability has been identified in …

CVE-2024-52308 HIGH 9 months, 3 weeks ago

The GitHub CLI version 2.6.1 and earlier are vulnerable to remote code execution through a malicious codespace SSH server when using `gh codespace ss…

CVE-2024-8810 UNKNOWN 10 months ago

A GitHub App installed in organizations could upgrade some permissions from read to write access without approval from an organization administrator.…

CVE-2024-10824 UNKNOWN 10 months ago

An authorization bypass vulnerability was identified in GitHub Enterprise Server that allowed unauthorized internal users to access sensitive secret …

CVE-2024-10007 UNKNOWN 10 months ago

A path collision and arbitrary code execution vulnerability was identified in GitHub Enterprise Server that allowed container escape to escalate to r…

CVE-2024-9539 UNKNOWN 10 months, 4 weeks ago

An information disclosure vulnerability was identified in GitHub Enterprise Server via attacker uploaded asset URL allowing the attacker to retrieve …

CVE-2024-9487 UNKNOWN 10 months, 4 weeks ago

An improper verification of cryptographic signature vulnerability was identified in GitHub Enterprise Server that allowed SAML SSO authentication to …

CVE-2024-8263 UNKNOWN 11 months, 2 weeks ago

An improper privilege management vulnerability allowed arbitrary workflows to be committed using an improperly scoped PAT through the use of nested t…

CVE-2024-8770 UNKNOWN 11 months, 2 weeks ago

A Cross-Site Scripting (XSS) vulnerability was identified in the repository transfer feature of GitHub Enterprise Server, which allows attackers to s…