CVE-2025-3246 — An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that allowed cross-site scripting in GitHub Markdown that used `$..$` math blocks. Exploitation required — CVE Database · The Intelligence Room