CVE-2021-22866
- EPSS 0.2%
- Veröffentlicht 14.05.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 05:50:47
A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed more permissions to be granted during a GitHub App's user-authorization web flow than was displayed to the user during approval. To exploit this vulnerabilit...
CVE-2021-22865
- EPSS 0.23%
- Veröffentlicht 02.04.2021 18:15:21
- Zuletzt bearbeitet 21.11.2024 05:50:47
An improper access control vulnerability was identified in GitHub Enterprise Server that allowed access tokens generated from a GitHub App's web authentication flow to read private repository metadata via the REST API without having been granted the ...
CVE-2021-22864
- EPSS 2.5%
- Veröffentlicht 23.03.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:50:47
A remote code execution vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site. User-controlled configuration options used by GitHub Pages were not sufficiently restricted and made it possib...