GitHub Actions secret leak #Security #BugBounty #GitHub
Repository imports defaulting to public regardless of user's visibility selection #Security #BugBounty #OpenSource
Incorrect OAuth scopes shown on authorization page #Security #BugBounty #OAuth
Missing authentication on GitHub Enterprise QA deployments #Security #BugBounty #OpenSource
Argument injection when cloning Git submodules #Security #BugBounty #Git
Creating verified commits for arbitrary emails using web commits #Security #OpenSource #GitHub
"Require review from Code Owners" bypass using unverified email addresses #Security #BugBounty #GitHub
Secret Gist disclosure with scopeless OAuth token #Security #BugBounty #OpenSource
Bypass OAuth access policy on GraphQL API #Security #BugBounty #GraphQL
RCE in GitHub Pages when building with submodules #Security #BugBounty #GitHub
CSRF in opting out of organization invites #Security #BugBounty #GitHub
XSS on render.githubusercontent.com through filename in ipynb #Security #BugBounty #XSS
Extending the scopes of an SSO-authorized personal access token without a SAML session #Security #BugBounty #GitHub
Localhost same-site request forgery via GitHub Webhooks #Security #BugBounty #WebSecurity
Insufficient authorization check when previewing non-code files #Security #BugBounty #Vulnerability
Insufficient token scope checks for Gist access via Git #Security #BugBounty #GitHub
Repository administrator privilege escalation via GitHub App installation #Security #BugBounty #GitHub
Claiming an organization invite without proving ownership of the invited email address #Security #BugBounty #Vulnerability
Repository administrators can bypass repository visibility permissions #Security #BugBounty #GitHub
Insufficient authorization check when adding issues to projects #Security #BugBounty #OpenSource
Insufficient authorization check of GitHub App repo creation #Security #GitHub #Bounty
Bypass organization paid plan billing validation #Security #BugBounty #GitHub
Private issue title disclosure via marking as duplicate #Security #BugBounty #GitHub
Repository Service Hooks making non-http requests #Security #BugBounty #GitHub
GitHub employee GitHub.com tokens exposed via NPM package #Security #BugBounty #OpenSource
NPM token for Electron exposed #Security #BugBounty #NPM
XSS in commit messages #Security #BugBounty #XSS
GitHub Enterprise pre-receive hooks access sensitive localhost services #Security #BugBounty #Vulnerability
GitHub Desktop remote code execution #Security #BugBounty #OpenSource
GIT LFS code execution #Security #BugBounty #OpenSource
Unintended services exposed to internet due to ACL changes #Security #BugBounty #Vulnerability
User-controlled `class` attribute on some Markdown tags #Security #BugBounty #Vulnerability
Cross-origin brute-forcing of SAML and 2FA recovery codes #Security #BugBounty #Privacy
Organization member can change organization visibility for other members #Security #BugBounty #GitHub
SAML Response attribute not revoked to prevent replay attacks #Security #BugBounty #SAML
Unauthenticated organization SAML recovery code download #Security #BugBounty #Vulnerability
List repositories API returns incorrectly cached response #BugBounty #GitHub #Security
HTTP header injection in Git proxy #Security #BugBounty #OpenSource
GitHub Enterprise management console remote code execution #Security #BugBounty #Vulnerability
GitHub Enterprise remote code execution via SSRF #Security #BugBounty #Vulnerability