GitHub Enterprise bug bounty: PATs without repo scope could still leak private issues and commits via search endpoints. CVE-2026-3582 shows that token scopes need consistent enforcement across ALL API paths. Check your token boundaries.