İçeriğe atla
Noroxi

ahacker1

24 kredili kayıt · son 12 ayda 11 · 0 tanesi CISA KEV’de

Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.

Kredili kayıtlar

Araştırmacılar
  • CVE-2026-77912
    29İzleyin

    Stored cross-site scripting vulnerability in GitHub Enterprise Server allowed HTML attribute injection via the Markdown rendering pipeline

    YüksekCVSS 7,4İstismar yokEPSS %0

    github · enterprise server22 Eyl 2026

  • CVE-2026-19118
    30İzleyin

    Race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution

    YüksekCVSS 7,7İstismar yokEPSS %1

    github · enterprise server1 Eyl 2026

  • CVE-2026-14340
    21İzleyin

    An incorrect authorization vulnerability in GitHub Enterprise Server allows issue creation in unrelated public repositories

    OrtaCVSS 5,3İstismar yokEPSS %0

    github · enterprise server1 Tem 2026

  • CVE-2026-9312
    36İzleyin

    Server-Side Request Forgery vulnerability in GitHub Enterprise Server allowed access to internal services via path traversal in upload endpoint

    KritikCVSS 9,2İstismar yokEPSS %1

    github · enterprise server26 May 2026

  • CVE-2026-5845
    28İzleyin

    Improper authorization fallback allows scoped user-to-server token installation escape in GitHub Enterprise Server

    YüksekCVSS 7,2İstismar yokEPSS %0

    github · enterprise server21 Nis 2026

  • CVE-2026-5512
    21İzleyin

    Improper authorization vulnerability in GitHub Enterprise Server allowed disclosure of private repository names via mobile upload policy API

    OrtaCVSS 5,3İstismar yokEPSS %0

    github · enterprise server21 Nis 2026

  • CVE-2026-4296
    30İzleyin

    Incorrect Regular Expression vulnerability in GitHub Enterprise Server allowed unauthorized access to user accounts via OAuth callback URL validation bypass

    YüksekCVSS 7,5İstismar yokEPSS %1

    github · enterprise server21 Nis 2026

  • CVE-2026-3307
    21İzleyin

    Authorization bypass in GitHub Enterprise Server secret scanning push protection allows cross-repository modification of delegated bypass reviewers

    OrtaCVSS 5,3İstismar yokEPSS %0

    github · enterprise server21 Nis 2026

  • CVE-2026-3306
    21İzleyin

    Improper authorization in GitHub Projects allows modification of issue and pull request metadata without repository write access

    OrtaCVSS 5,3Kavram kanıtıEPSS %0

    github · enterprise server10 Mar 2026

  • CVE-2026-1999
    28İzleyin

    Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed unauthorized merging of pull requests

    YüksekCVSS 7,1Kavram kanıtıEPSS %0

    github · enterprise server18 Şub 2026

  • CVE-2026-1355
    24İzleyin

    Missing Authorization Check in GitHub Enterprise Server Allows Unauthorized Uploads to Repository Migration Exports

    OrtaCVSS 6,0İstismar yokEPSS %0

    github · enterprise server18 Şub 2026

  • CVE-2024-8810
    34İzleyin

    Privilege Management vulnerability was identified in GitHub Enterprise Server that allowed GitHub Apps to grant themselves write access

    YüksekCVSS 8,7İstismar yokEPSS %0

    github · enterprise server7 Kas 2024

  • CVE-2024-7711
    21İzleyin

    An Incorrect Authorization vulnerability was identified in GitHub Enterprise Server, allowing an attacker to update the title, assignees, an

    OrtaCVSS 5,3İstismar yokEPSS %0

    github · enterprise server20 Ağu 2024

  • CVE-2024-6800
    38İzleyin

    An XML signature wrapping vulnerability was present in GitHub Enterprise Server (GHES) when using SAML authentication with specific identity

    KritikCVSS 9,5İstismar yokEPSS %2

    github · enterprise server20 Ağu 2024

  • CVE-2024-6395
    25İzleyin

    GitHub Enterprise Server Information Disclosure Vulnerability Exposes Private Repository Names via Deploy Keys

    OrtaCVSS 6,3İstismar yokEPSS %0

    github · enterprise server16 Tem 2024

  • CVE-2024-5817
    23İzleyin

    Improper authorization allows read access to issue content in GitHub Enterprise Server

    OrtaCVSS 5,9İstismar yokEPSS %1

    github · enterprise server16 Tem 2024

  • CVE-2024-5816
    27İzleyin

    Improper authorization allows persistent access in GitHub Enterprise Server

    OrtaCVSS 6,9İstismar yokEPSS %1

    github · enterprise server16 Tem 2024

  • CVE-2024-5815
    27İzleyin

    Cross Site Request Forgery was identified in GitHub Enterprise Server that allowed write in a user owned repository

    OrtaCVSS 6,8İstismar yokEPSS %0

    github · enterprise server16 Tem 2024

  • CVE-2024-1908
    26İzleyin

    Improper Privilege Management vulnerability was identified in GitHub Enterprise Server that allowed Privilege Escalation

    OrtaCVSS 6,5İstismar yokEPSS %1

    github · enterprise server20 Mar 2024

  • CVE-2024-1482
    26İzleyin

    Improper Authorization in GitHub Enterprise Server allowed unauthorized workflow execution

    OrtaCVSS 6,5İstismar yokEPSS %0

    github · enterprise server14 Şub 2024

  • CVE-2023-6847
    30İzleyin

    Improper Authentication in GitHub Enterprise Server leading to Authentication Bypass for Public Repository Data

    YüksekCVSS 7,5İstismar yokEPSS %1

    github · enterprise server21 Ara 2023

  • CVE-2023-46646
    21İzleyin

    Improper access control in all versions of GitHub Enterprise Server allows unauthorized users to view private repository names via the "Get

    OrtaCVSS 5,3İstismar yokEPSS %1

    github · enterprise server21 Ara 2023

  • CVE-2022-23739
    39İzleyin

    Incorrect authorization check in GitHub Enterprise Server leading to escalation of privileges in GraphQL API requests from GitHub Apps using scoped user-to-serv

    KritikCVSS 9,8İstismar yokEPSS %1

    github · enterprise server17 Oca 2023

  • CVE-2022-23738
    22İzleyin

    Incomplete cache verification issue in GitHub Enterprise Server leading to exposure of private repo files

    OrtaCVSS 5,7İstismar yokEPSS %1

    github · enterprise server1 Kas 2022