Critical GitHub Enterprise Server Flaw Patched, Admin Access at Risk
Critical GitHub Enterprise Server Flaw Patched, Admin Access at Risk
23 August 2024
GitHub disclosed three security vulnerabilities in GitHub Enterprise Server (GHES), including CVE-2024-6800, CVE-2024-6337, and CVE-2024-7711. The most severe, CVE-2024-6800, allowed attackers to forge a SAML response, granting site admin privileges.