CVE-2026-3854 is a vulnerability tracked across 1 threat cluster and 11 intelligence report mentions on ThreatCluster. First observed April 28, 2026; most recent activity April 29, 2026.
A critical remote code execution vulnerability, tracked as CVE-2026-3854, was discovered in GitHub's internal git infrastructure, allowing authenticated users to execute arbitrary commands via a crafted git push…