GitHub
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 210 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 4, 2012 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Server-Side Request Forgery vulnerability in GitHub Enterprise Server allowed remote code execution via network access from pre-receive hooks to internal services
Race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution
Server-side request forgery vulnerability in GitHub Enterprise Server Manage API leaked a replayable gateway-agent bearer token
GitHub CLI: `gh codespace ports forward` exposes forwarded services on all network interfaces by default
GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
GitHub CLI: Attestation Verification Bypass via Unescaped Regex Metacharacters in SAN Matching
GitHub CLI: Terminal escape sequence injection in multiple `gh` commands
GitHub CLI: Unescaped variable components in request URLs could allow path traversal
GitHub CLI: Partial token disclosure in `gh auth status` output
Denial of service vulnerability in GitHub Enterprise Server allowed unauthenticated service disruption via deeply nested request parameters
Monitor GitHub in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.