Our security policy is documented at https://sourcegraph.com/security.
    This repository was archived by the owner on Sep 30, 2024. It is now read-only.
  
  
  
  
Security: sourcegraph/sourcegraph-public-snapshot
Security
SECURITY.md
- 
  Arbitrary Command Execution in gitserver through customGitFetch featureGHSA-4qhq-4x4h-fxm8 publishedNov 22, 2022 by evictCritical
- 
  Command Injection in gitserverGHSA-pfm3-23mh-6xjp publishedNov 22, 2022 by evictHigh
- 
  Unauthorized overwriting of saved searches in SourcegraphGHSA-37qp-9jq6-f6mx publishedJul 26, 2022 by ferozsalamModerate
- 
  Indirect Object Access in Sourcegraph Code MonitoringGHSA-5866-hhq9-9hpc publishedJul 26, 2022 by ferozsalamHigh
- 
  Remote Code Execution in gitserverGHSA-r2m9-hfg8-4c38 publishedMay 3, 2022 by andreeleuterioHigh
- 
  Side-channel attack in Sourcegraph Code MonitorsGHSA-xqv2-x6f2-w3pf publishedFeb 15, 2022 by andreeleuterioHigh
- 
  Remote Code Execution in gitserverGHSA-qcmp-fx72-q8q9 publishedFeb 18, 2022 by andreeleuterioHigh
- 
  Side-channel attack in SourcegraphGHSA-cpq7-hmvv-29w9 publishedDec 13, 2021 by andreeleuterioHigh
- 
  Low risk information disclosure in SourcegraphGHSA-mq5p-477h-xgwv publishedAug 2, 2021 by andreeleuterioLow
- 
  Open redirect vulnerabilityGHSA-mx43-r985-5h4m publishedApr 30, 2020 by nicksnyderHigh
         Learn more about advisories related to sourcegraph/sourcegraph-public-snapshot in the GitHub Advisory Database