在 GitHub Enterprise Server 中发现了一个服务端请求伪造(SSRF)漏洞,该漏洞允许在实例上实现远程代码执行。由于网络隔离不足,恶意的 pre-receive 钩子代码可以模拟内部服务,并将受信任的内部请求重定向到具有更高权限的服务,从而导致代码执行权限提升。利用该漏洞需要启用 pre-receive 钩子的网络访问,并且拥有站点管理员权限,或者对包含已配置 pre-receive 钩子的仓库具有写入权限。该漏洞影响 GitHub Enterprise Server 3.22 之前的所有版本
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitHub | Enterprise Server | 3.17.0 ~ 3.17.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-18730 | 8.2 HIGH | Server-side request forgery vulnerability in GitHub Enterprise Server Manage API leaked a |
| CVE-2026-19118 | 7.7 HIGH | Race condition vulnerability was identified in GitHub Enterprise Server that allowed remot |
No comments yet