CVE Tools
Back to feed
GitHub Security Lab ·EN-US Vendor research

Securing the git push pipeline: Responding to a critical remote code execution vulnerability

By Alexis Wales··5 min read

On March 4, 2026, we received a vulnerability report through our Bug Bounty program from researchers at Wiz describing a critical remote code execution vulnerability affecting github.com, GitHub Enterprise Cloud, GitHub Enterprise Cloud with Data Residency, GitHub Enterprise Cloud with Enterprise Managed Users, and GitHub Enterprise Server.…

Continue reading on GitHub Security Lab