Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-27390 | A race condition in GitHub Enterprise Server allowed an existing admin to maintain permissions on a detached repository by making a GraphQL mutation to alter repository permissions while the repository is detached. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.13 and was fixed in versions 3.9.13, 3.10.10, 3.11.8 and 3.12.1. This vulnerability was reported via the GitHub Bug Bounty program. |
Tue, 02 Sep 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:github:enterprise_server:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: GitHub_P
Published:
Updated: 2024-08-01T19:11:53.576Z
Reserved: 2024-03-13T21:14:42.227Z
Link: CVE-2024-2440
Updated: 2024-08-01T19:11:53.576Z
Status : Analyzed
Published: 2024-04-19T17:15:54.483
Modified: 2026-06-17T07:24:32.387
Link: CVE-2024-2440
No data.
OpenCVE Enrichment
Updated: 2025-07-12T16:01:26Z
-
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
EUVD