VulnSea

enterprise_server vulnerabilities

CVEs whose affected-version data names the enterprise_server package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

6 CVEsRSS

CVE-2026-92808Critical· 10.0
6d ago

A server-side request forgery (SSRF) vulnerability exists in the UnifiedLogin service of Altium Enterprise Server

A server-side request forgery (SSRF) vulnerability exists in the UnifiedLogin service of Altium Enterprise Server. An unauthenticated network attacker can cause the server to issue outbound HTTP requests to a destination of the attacker'…

MidnightAltium · Altium Enterprise ServerEPSS 0.32%via NVD
CVE-2026-18730High· 7.4
3w ago

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause the Manage API to send crafted outbound requests to an attacker-controlled host

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause the Manage API to send crafted outbound requests to an attacker-controlled host. An unauthent…

Twilightgithub · enterprise_serverEPSS 0.29%via NVD
CVE-2026-76851High· 8.8
3w ago

A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed remote code execution on the instance

A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed remote code execution on the instance. Insufficient network isolation allowed malicious pre-receive hook code to impersonate an in…

Twilightgithub · enterprise_serverEPSS 0.51%via NVD
CVE-2026-19118High· 7.5
3w ago

A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution

A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution. Exploitation required an authenticated user with write access to a repository and precise timing of c…

Twilightgithub · enterprise_serverEPSS 0.53%via NVD
CVE-2026-9312High· 8.2
3mo ago

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload…

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload…

Twilightgithub · enterprise_serverEPSS 6.6%via NVD
CVE-2023-4501Critical· 9.8
3y ago

User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…

User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), vers…

Midnightmicrofocus · cobol_serverEPSS 0.75%via NVD
enterprise_server vulnerabilities (CVEs) · VulnSea