Expand image📰00Pentesters found a crazy vulnerability on github yesterday (patched)Reddit r/webdev·u/Meuss·about 1 month ago#d1KPxSAb#github#vulnerability#crazy#patched#able#photo+3 more🧰Tag tools✨Add tagReading 0:0015s thresholdBookmarkThese guys were able to turn a simple git push command into a way to execute code on github.com's servers directly, they were able to get access other tenant's repos, including private ones. Pretty crazy stuff. The vulnerability was already patched. Here is a blog post about how they did it: Securing GitHub: Wiz Research uncovers Remote Code Execution in GitHub.com and GitHub Enterprise Server (CVE-2026-3854) 0Read later0Read More