github security advisories
4 threat alerts tracking vulnerabilities and security advisories that affect github products.
Vulnios monitors github CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent github security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2026-17556 — github — enterprise_server
A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to delete arbitrary files and directories on the instance, including the entire user
criticalCVE-2026-17556Critical Vulnerability: CVE-2024-22051 — github, gjtorikian — cmark-gfm, commonmarker
CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability. This vulnerability can result in possibly unauthenticated remote attackers to cause heap memory corruption, pote
criticalCVE-2024-22051Critical Vulnerability: CVE-2026-8034 — github — enterprise_server
A server-side request forgery (SSRF) vulnerability was identified in the GitHub Enterprise Server notebook viewer that allowed an attacker to access internal services by exploiting URL parser confusio
criticalCVE-2026-8034Critical Vulnerability: CVE-2026-5845 — github — enterprise_server
An improper authorization vulnerability in scoped user-to-server (ghu_) token authorization in GitHub Enterprise Server allows an authenticated attacker to access private repositories outside the inte
criticalCVE-2026-5845
Track github exposure across your environment
Vulnios automatically cross-references your asset inventory against new github CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan