QID 379372

Date Published: 2024-02-19

QID 379372: GitHub Enterprise Server Multiple Security Vulnerabilities

GitHub provides hosting for software development version control using Git.

Affected Versions:
GitHub Enterprise Server version 3.8.0 to 3.8.14.
GitHub Enterprise Server version 3.9.0 to 3.9.9.
GitHub Enterprise Server version 3.10.0 to 3.10.6.
GitHub Enterprise Server version 3.11.0 to 3.11.4.

QID Detection Logic:
It checks for vulnerable versions of the GitHub Enterprise Server.

This vulnerability could compromise the Confidentiality, Integrity, and Availability of data.

  • CVSS V3 rated as Critical - 9.1 severity.
  • CVSS V2 rated as Critical - 8.3 severity.
  • Software Advisories
    Advisory ID Software Component Link
    Enterprise Server 3.10.7 URL Logo docs.github.com/en/[email protected]/admin/release-notes#3.10.7
    Enterprise Server 3.11.5 URL Logo docs.github.com/en/[email protected]/admin/release-notes#3.11.5
    Enterprise Server 3.8.15 URL Logo docs.github.com/en/[email protected]/admin/release-notes#3.8.15
    Enterprise Server 3.9.10 URL Logo docs.github.com/en/[email protected]/admin/release-notes#3.9.10