GitHub Enterprise Server has a critical security flaw, so patch now



GitHub Enterprise Server, the self-hosted version of the GitHub platform, was found carrying a vulnerability that allowed malicious actors to elevate their privileges to admin.

The vulnerability, tracked as CVE-2024-6800, and has a severity rating of 9.5/10 (critical), is described as an XML signature wrapping issue. It happens when the victim uses the Security Assertion Markup Language (SAML) authentication standard, with certain ID providers.

https://cdn.mos.cms.futurecdn.net/2viAsX89eJReYQEQ3i3SwH-1200-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img