VulnSea

github has 9 CVEs on record between 2024 and 2026. Disclosure cadence is accelerating: 6 in the last 90 days against 2 in the 90 before. The busiest recent month was September 2026 with 3. The median CVSS is 7.5 (high), with 1 rated critical. None have a confirmed exploitation report. The most common weakness class is CWE-918 (3). Most affected products: enterprise_server (4), github.com/github/github-mcp-server (2), cmark-gfm (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.5
Publish → KEV
Last 90 days
6 prev 2

Products

  • enterprise_server 4
  • github.com/github/github-mcp-server 2
  • cmark-gfm 1
  • com.github.jknack:handlebars 1
  • com.github.jknack:handlebars-springmvc 1
9
Total CVEs
1
Critical
0
CISA KEV
0
Exploited

github vulnerabilities

CVEs affecting github, newest first. Open any entry for full detail, references, and exploit status.

9 CVEsRSS

CVE-2026-18730High· 7.4
3w ago

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause the Manage API to send crafted outbound requests to an attacker-controlled host

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause the Manage API to send crafted outbound requests to an attacker-controlled host. An unauthent…

Twilightgithub · enterprise_serverEPSS 0.29%via NVD
CVE-2026-76851High· 8.8
3w ago

A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed remote code execution on the instance

A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed remote code execution on the instance. Insufficient network isolation allowed malicious pre-receive hook code to impersonate an in…

Twilightgithub · enterprise_serverEPSS 0.51%via NVD
CVE-2026-19118High· 7.5
3w ago

A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution

A time-of-check time-of-use race condition vulnerability was identified in GitHub Enterprise Server that allowed remote code execution. Exploitation required an authenticated user with write access to a repository and precise timing of c…

Twilightgithub · enterprise_serverEPSS 0.53%via NVD
CVE-2026-63490High· 7.5
1mo ago

Handlebars.java provides logic-less and semantic Mustache templates with Java

Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.3, com.github.jknack.handlebars.springmvc.SpringTemplateLoader resolves attacker-influenced Spring MVC view names through Spring ResourceLoader w…

Twilightgithub · com.github.jknack:handlebars-springmvcEPSS 0.47%via NVD
CVE-2026-47427High· 7.5
1mo ago

GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler

GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler

Twilightgithub · github.com/github/github-mcp-serverEPSS 0.44%via GHSA
CVE-2026-48529Medium· 6.0
2mo ago

GitHub MCP Server: Lockdown mode singleton in HTTP server causes cross-user GraphQL client confusion

GitHub MCP Server: Lockdown mode singleton in HTTP server causes cross-user GraphQL client confusion

Sunlitgithub · github.com/github/github-mcp-serverEPSS 0.21%via GHSA
CVE-2026-55760High· 7.5
3mo ago

handlebars.java FileTemplateLoader Path Traversal

handlebars.java FileTemplateLoader Path Traversal

Twilightgithub · com.github.jknack:handlebarsEPSS 0.53%via GHSA
CVE-2026-9312High· 8.2
3mo ago

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload…

A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to send crafted requests to internal services by exploiting insufficient input validation in an upload…

Twilightgithub · enterprise_serverEPSS 6.6%via NVD
CVE-2024-22051Critical· 9.8
2y ago

CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability

CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability. This vulnerability can result in possibly unauthenticated remote attackers to cause heap memory corruption, potentially leading to an information lea…

Midnightgithub · cmark-gfmEPSS 1.5%via NVD
github vulnerabilities (CVEs) · VulnSea