GitHub CVE-2026-3854: Critical RCE Vulnerability Exploited via Git Push

A single git push can execute arbitrary commands on GitHub's backend servers...   CVE-2026-3854 is a command injection in GitHub's push processing pipeline. User-supplied push option values were not sanitized before being injected into internal service headers.   Standard git client... any authenticated user... full RCE.   Here is the high-signal breakdown of the chain:   > The RCE Chain. > Three injections chained together. A non-production rails_env bypasses the sandbox... custom_hooks_dir redirects the hook directory... and a crafted hook entry executes arbitrary commands as the git user. > Result: Full filesystem read/write and visibility into internal service configurations.   > The Cross-Tenant Blast Radius. > This is the nightmare scenario... GitHub's shared storage architecture meant code execution on one node gave access across tenants. > Millions of public and private repositories—including those of other organizations—were accessible on the affected nodes.   > The AI Angle: IDA MCP. > This is one of the first critical vulnerabilities discovered in closed-source binaries using autonomous AI. > Wiz used IDA MCP for automated reverse engineering across compiled binaries. AI is now finding bugs faster than humans can patch them.   > The Exposure Now. > GitHub.com was patched within two hours of disclosure on March 4. Public disclosure was held until yesterday to give Enterprise Server operators time to patch. > Current state: 88% of GHES instances remain unpatched.   The takeaway..  The responsible disclosure window is officially closed. If you run GitHub Enterprise Server... you are likely still exposed.   Upgrade to GHES 3.19.3 now. Not this week... now.   #AppSec #DevSecOps #GitHub #AIInfrastructure #SoftwareEngineering

  • No alternative text description for this image

Fireship just dropped “GitHub is having some major issues right now…” The CVE was one piece. Merge queue silently reverted 2,092 PRs the same week. Three failures in five days… on a platform with no CEO.

Like
Reply

To view or add a comment, sign in

Explore content categories