İçeriğe atla
Noroxi

git-scm kayıtları

git-scm üreticisine ait 41 yayımlanmış kayıt.

Tüm kayıtlar

41 kayıt
  • CVE-2018-17456
    68Bu hafta

    Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows r

    KritikCVSS 9,8SilahlaştırılmışEPSS %97

    git-scm · git6 Eki 2018

  • CVE-2025-48384
    63Bu hafta

    Git allows arbitrary code execution through broken config quoting

    YüksekCVSS 8,0KEVSilahlaştırılmışEPSS %4

    git-scm · git8 Tem 2025

  • CVE-2014-9390
    62Bu hafta

    Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before

    KritikCVSS 9,8SilahlaştırılmışEPSS %76

    mercurial · mercurial11 Şub 2020

  • CVE-2017-1000117
    58Planlayın

    A malicious third-party can give a crafted "ssh://..." URL to an unsuspecting victim, and an attempt to visit the URL can result in any prog

    YüksekCVSS 8,8SilahlaştırılmışEPSS %78

    git-scm · git4 Eki 2017

  • CVE-2021-21300
    57Planlayın

    malicious repositories can execute remote code while cloning

    YüksekCVSS 7,5SilahlaştırılmışEPSS %89

    git-scm · git9 Mar 2021

  • CVE-2022-23521
    56Planlayın

    gitattributes parsing integer overflow in git

    KritikCVSS 9,8İstismar yokEPSS %56

    git-scm · git17 Oca 2023

  • CVE-2022-41903
    52Planlayın

    Integer overflow in `git archive`, `git log --format` leading to RCE in git

    KritikCVSS 9,8Kavram kanıtıEPSS %44

    git-scm · git17 Oca 2023

  • CVE-2023-25652
    46Planlayın

    "git apply --reject" partially-controlled arbitrary file write

    YüksekCVSS 7,5İstismar yokEPSS %52

    git-scm · git25 Nis 2023

  • CVE-2018-11235
    46Planlayın

    In Git before 2.13.7, 2.14.x before 2.14.4, 2.15.x before 2.15.2, 2.16.x before 2.16.4, and 2.17.x before 2.17.1, remote code execution can

    YüksekCVSS 7,8Kavram kanıtıEPSS %49

    debian · debian linux30 May 2018

  • CVE-2017-14867
    46Planlayın

    Git before 2.10.5, 2.11.x before 2.11.4, 2.12.x before 2.12.5, 2.13.x before 2.13.6, and 2.14.x before 2.14.2 uses unsafe Perl scripts to su

    YüksekCVSS 8,8İstismar yokEPSS %36

    git-scm · git28 Eyl 2017

  • CVE-2016-2324
    44Planlayın

    Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, whi

    KritikCVSS 9,8İstismar yokEPSS %18

    suse · linux enterprise debuginfo8 Nis 2016

  • CVE-2016-2315
    44Planlayın

    revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long f

    KritikCVSS 9,8İstismar yokEPSS %17

    suse · linux enterprise debuginfo8 Nis 2016

  • CVE-2018-19486
    40Planlayın

    Git before 2.19.2 on Linux and UNIX executes commands from the current working directory (as if '.' were at the end of $PATH) in certain cas

    KritikCVSS 9,8İstismar yokEPSS %4

    linux · linux kernel23 Kas 2018

  • CVE-2019-1353
    40Planlayın

    An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6.

    KritikCVSS 9,8İstismar yokEPSS %2

    git-scm · git24 Oca 2020

  • CVE-2019-1387
    36İzleyin

    An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6.

    YüksekCVSS 8,8İstismar yokEPSS %4

    git-scm · git18 Ara 2019

  • CVE-2022-39260
    36İzleyin

    Git vulnerable to Remote Code Execution via Heap overflow in `git shell`

    YüksekCVSS 8,8İstismar yokEPSS %3

    git-scm · git19 Eki 2022

  • CVE-2014-9938
    36İzleyin

    contrib/completion/git-prompt.sh in Git before 1.9.3 does not sanitize branch names in the PS1 variable, allowing a malicious repository to

    YüksekCVSS 8,8İstismar yokEPSS %2

    git-scm · git19 Mar 2017

  • CVE-2020-5260
    33İzleyin

    malicious URLs may cause Git to present stored credentials to the wrong server

    YüksekCVSS 7,5Kavram kanıtıEPSS %10

    git · git14 Nis 2020

  • CVE-2022-41953
    33İzleyin

    Git clone remote code execution vulnerability in git-for-windows

    YüksekCVSS 7,8İstismar yokEPSS %7

    git-scm · git17 Oca 2023

  • CVE-2023-29007
    33İzleyin

    Arbitrary configuration injection via `git submodule deinit`

    YüksekCVSS 7,8Kavram kanıtıEPSS %6

    git-scm · git25 Nis 2023

  • CVE-2019-19604
    32İzleyin

    Arbitrary command execution is possible in Git before 2.20.2, 2.21.x before 2.21.1, 2.22.x before 2.22.2, 2.23.x before 2.23.1, and 2.24.x b

    YüksekCVSS 7,8İstismar yokEPSS %4

    git-scm · git10 Ara 2019

  • CVE-2018-11233
    31İzleyin

    In Git before 2.13.7, 2.14.x before 2.14.4, 2.15.x before 2.15.2, 2.16.x before 2.16.4, and 2.17.x before 2.17.1, code to sanity-check pathn

    YüksekCVSS 7,5İstismar yokEPSS %4

    canonical · ubuntu linux30 May 2018

  • CVE-2008-5516
    31İzleyin

    The web interface in git (gitweb) 1.5.x before 1.5.5 allows remote attackers to execute arbitrary commands via shell metacharacters related

    YüksekCVSS 7,5İstismar yokEPSS %4

    git · git20 Oca 2009

  • CVE-2020-11008
    31İzleyin

    Malicious URLs can still cause Git to send a stored credential to the wrong server

    YüksekCVSS 7,5İstismar yokEPSS %4

    git-scm · git21 Nis 2020

  • CVE-2021-40330
    31İzleyin

    git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cr

    YüksekCVSS 7,5İstismar yokEPSS %3

    git-scm · git31 Ağu 2021