CVE-2026-2266 — An improper neutralization of input vulnerability was identified in GitHub Enterprise Server that allowed DOM-based cross-site scripting via task list content. The task list content extraction logic d — CVE Database · The Intelligence Room