News

CVE-2026-3854 GitHub flaw enables remote code execution

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-04-28 20:39:28 UTC

Critical GitHub flaw CVE-2026-3854 lets attackers run code with a single git push, exploiting a command injection bug. Researchers found a critical vulnerability in GitHub, tracked as CVE-2026-3854, that allows remote code execution through a simple git push.…

CVE-2026-3854 GitHub flaw enables remote code execution Researchers found a critical vulnerability in GitHub, tracked as CVE-2026-3854, that allows remote code execution through a simple git push. T… [+4930 chars]