1. GitHub Patches Critical RCE Vulnerability in git push Pipeline After Wiz Researchers Disclose Flaw
A critical remote code execution vulnerability in GitHub's core git push pipeline could have allowed any user with repository push access to execute arbitrary commands on GitHub's servers—requiring only a single crafted git push command. The vulnerability, reported by researchers at cloud security firm Wiz on March 4, ...