Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

GitHub Enterprise Server — Vulnerabilities & Security Advisories 46

All 46 CVE vulnerabilities found in GitHub Enterprise Server, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities affecting GitHub Enterprise Server, a software product by GitHub. It collects public advisories related to known security flaws in the platform, covering historical records and recent disclosures from established vulnerability databases. Readers can track the vendor’s published security advisories, understand the nature of specific weakness classes affecting the product, and review the product’s complete vulnerability history. The data is presented objectively to support security monitoring, risk assessment, and patching decisions. No marketing language is used, and specific CVE identifiers are omitted in favor of broader pattern analysis.

Vendor: GitHub

CVE ID Title CVSS Severity Published
CVE-2021-41599 Improper control flow in GitHub Enterprise Server hosted Pages leads to remote code execution CWE-77 8.8 - 2022-02-17
CVE-2021-41598 UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user CWE-451 8.8 - 2022-01-25
CVE-2021-22870 Path traversal in GitHub Enterprise Server hosted Pages leads to unauthorized file read access CWE-23 6.5 - 2021-11-10
CVE-2021-22868 Unsafe configuration options in GitHub Pages leading to path traversal on GitHub Enterprise Server CWE-77 6.5 - 2021-09-24
CVE-2021-22869 Improper access control in GitHub Enterprise Server allows self-hosted runners to execute outside their control group CWE-668 9.8 - 2021-09-24
CVE-2021-22867 Unsafe configuration options in GitHub Pages leading to path traversal on GitHub Enterprise Server CWE-77 6.5 - 2021-07-14
CVE-2021-22866 UI misrepresentation of granted permissions in GitHub Enterprise Server leading to unauthorized access to user resources CWE-451 8.8 - 2021-05-14
CVE-2021-22865 Improper access control in GitHub Enterprise Server leading to unauthorized read access to private repository metadata CWE-285 4.3 - 2021-04-02
CVE-2021-22864 Unsafe configuration options in GitHub Pages leading to remote code execution on GitHub Enterprise Server CWE-77 8.8 - 2021-03-23
CVE-2021-22863 Improper access control in GitHub Enterprise Server leading to unauthorized changes to maintainer permissions on pull requests CWE-285 8.1 - 2021-03-03
CVE-2021-22862 Improper access control in GitHub Enterprise Server leading to the disclosure of Actions secrets to forks CWE-285 6.5 - 2021-03-03
CVE-2021-22861 Improper access control in GitHub Enterprise Server leading to unauthorized write access to forkable repositories CWE-285 4.3 - 2021-03-03
CVE-2020-10519 Unsafe configuration options in GitHub Pages leading to remote code execution on GitHub Enterprise Server CWE-77 8.8 - 2021-03-03
CVE-2020-10517 Improper access control in GitHub Enterprise Server leading to the enumeration of private repository names CWE-285 4.3 - 2020-08-27
CVE-2020-10518 Unsafe configuration options in GitHub Pages leading to remote code execution on GitHub Enterprise Server CWE-77 8.8 - 2020-08-27
CVE-2020-10516 Improper access control in GitHub Enterprise Server leading to privilege escalation of organization member CWE-285 8.8 - 2020-06-03

All 46 known CVE vulnerabilities affecting GitHub Enterprise Server with full Chinese analysis, references, and POCs where available.