git-pull-or-clone project records
1 published records for vendor git-pull-or-clone project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
1 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2022-24437No exploit | The package git-pull-or-clone before 2.0.2 are vulnerable to Command Injection due to the use of the --upload-pack feature of git which is agit-pull-or-clone project · git-pull-or-clone · CWE-88 | Critical9.8 | — | 3.7% | May 1, 2022 |
- CVE-2022-2443740Plan
The package git-pull-or-clone before 2.0.2 are vulnerable to Command Injection due to the use of the --upload-pack feature of git which is a
CriticalCVSS 9.8No exploitEPSS 4%git-pull-or-clone project · git-pull-or-cloneMay 1, 2022