GitHub Enterprise Server has a critical security flaw, so patch now

GitHub Enterprise Server, the self-hosted version of the GitHub platform, was discovered to contain a vulnerability that could allow attackers to elevate their privileges to administrative rights.

The vulnerability, tracked as CVE-2024-6800 and has a severity rating of 9.5/10 (critical), is described as an XML signature wrapping issue. It occurs when the victim uses the Security Assertion Markup Language (SAML) authentication standard, with certain ID providers.