CVE-2026-76851 | GitHub Enterprise Server up to 3.21.4 Pre-receive Hook server-side request forgery

SecurityVulns

A vulnerability was found in GitHub Enterprise Server up to 3.17.19/3.18.13/3.19.10/3.20.6/3.21.4. It has been rated as critical. The impacted element is an unknown function of the component Pre-receive Hook. The manipulation leads to server-side request forgery.

This vulnerability is listed as CVE-2026-76851. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is advised.VulDB Recent EntriesRead More