Multiple vulnerabilities have been reported in GitHub Enterprise Server, which could allow an attacker to execute arbitrary code, gain unauthorized access to privileged internal services or management credentials and bypass certain email security controls.
Target Audience:
Individuals and organizations using affected versions of GitHub Enterprise Server.
Risk Assessment:
Potential for arbitrary code execution and compromise of privileged GitHub Enterprise Server (GHES) services.
Impact Assessment:
Remote code execution, unauthorized access to privileged internal services or management credentials and bypass certain email security controls.