İçeriğe atla
Noroxi

gitpython project kayıtları

gitpython project üreticisine ait 35 yayımlanmış kayıt.

Tüm kayıtlar

35 kayıt
  • CVE-2022-24439
    41Planlayın

    Remote Code Execution (RCE)

    KritikCVSS 9,8Kavram kanıtıEPSS %6

    gitpython project · gitpython6 Ara 2022

  • CVE-2023-40267
    39İzleyin

    GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from.

    KritikCVSS 9,8İstismar yokEPSS %1

    gitpython project · gitpython11 Ağu 2023

  • CVE-2026-42284
    39İzleyin

    GitPython: Unsafe option check validates multi_options before shlex.split transforms it

    KritikCVSS 9,8İstismar yokEPSS %1

    gitpython project · gitpython7 May 2026

  • CVE-2026-78676
    37İzleyin

    GitPython before 3.1.59 Remote Code Execution via Config Injection

    KritikCVSS 9,3İstismar yokEPSS %1

    gitpython project · gitpython24 Ağu 2026

  • CVE-2026-67324
    37İzleyin

    GitPython 3.1.50 Authentication Bypass via Joined Short Options

    KritikCVSS 9,3İstismar yokEPSS %1

    gitpython project · gitpython1 Ağu 2026

  • CVE-2026-67325
    35İzleyin

    GitPython before 3.1.51 Command Injection via option prefix abbreviation

    YüksekCVSS 8,7İstismar yokEPSS %2

    gitpython project · gitpython1 Ağu 2026

  • CVE-2026-42215
    35İzleyin

    GitPython: Command injection via Git options bypass

    YüksekCVSS 8,8İstismar yokEPSS %1

    gitpython project · gitpython7 May 2026

  • CVE-2026-67323
    34İzleyin

    GitPython before 3.1.51 Command Injection via unguarded Git options

    YüksekCVSS 8,6İstismar yokEPSS %1

    gitpython project · gitpython1 Ağu 2026

  • CVE-2026-73625
    34İzleyin

    GitPython before 3.1.54 Remote Code Execution via kwarg value smuggling

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython13 Ağu 2026

  • CVE-2026-76220
    34İzleyin

    GitPython before 3.1.58 Command Execution via split_single_char_options

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython19 Ağu 2026

  • CVE-2026-76221
    34İzleyin

    GitPython before 3.1.58 Config Injection via option-name

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython19 Ağu 2026

  • CVE-2026-78677
    34İzleyin

    GitPython before 3.1.59 Path Traversal via separate-git-dir

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython24 Ağu 2026

  • CVE-2026-87819
    34İzleyin

    GitPython before 3.1.60 Denial of Service via ReDoS

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython9 Eyl 2026

  • CVE-2026-73622
    34İzleyin

    GitPython before 3.1.55 Environment Variable Exfiltration via Remote.add()

    YüksekCVSS 8,7İstismar yokEPSS %1

    gitpython project · gitpython13 Ağu 2026

  • CVE-2026-87817
    34İzleyin

    GitPython before 3.1.60 Remote Code Execution via Git Directory Impersonation

    YüksekCVSS 8,7İstismar yokEPSS %0

    gitpython project · gitpython9 Eyl 2026

  • CVE-2026-67322
    34İzleyin

    GitPython before 3.1.52 Environment Variable Exfiltration via clone_from

    YüksekCVSS 8,7İstismar yokEPSS %0

    gitpython project · gitpython1 Ağu 2026

  • CVE-2026-78675
    34İzleyin

    GitPython before 3.1.59 Local File Content Disclosure via .gitmodules

    YüksekCVSS 8,6İstismar yokEPSS %0

    gitpython project · gitpython24 Ağu 2026

  • CVE-2026-76222
    33İzleyin

    GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Name

    YüksekCVSS 8,4İstismar yokEPSS %0

    gitpython project · gitpython19 Ağu 2026

  • CVE-2023-40590
    31İzleyin

    Untrusted search path on Windows systems leading to arbitrary code execution

    YüksekCVSS 7,8İstismar yokEPSS %1

    gitpython project · gitpython28 Ağu 2023

  • CVE-2026-44243
    31İzleyin

    GitPython: Path traversal in GitPython reference APIs allows arbitrary file write and delete outside the repository

    YüksekCVSS 7,8İstismar yokEPSS %0

    gitpython project · gitpython7 May 2026

  • CVE-2024-22190
    31İzleyin

    Untrusted search path under some conditions on Windows allows arbitrary code execution

    YüksekCVSS 7,8İstismar yokEPSS %0

    gitpython project · gitpython10 Oca 2024

  • CVE-2026-44244
    31İzleyin

    GitPython: Newline injection in config_writer().set_value() enables RCE via core.hooksPath

    YüksekCVSS 7,8İstismar yokEPSS %0

    gitpython project · gitpython7 May 2026

  • CVE-2026-73623
    30İzleyin

    GitPython before 3.1.54 Remote Code Execution via --template

    YüksekCVSS 7,7İstismar yokEPSS %1

    gitpython project · gitpython13 Ağu 2026

  • CVE-2026-76218
    30İzleyin

    GitPython before 3.1.58 Remote Code Execution via Repo.init

    YüksekCVSS 7,7İstismar yokEPSS %1

    gitpython project · gitpython19 Ağu 2026

  • CVE-2026-69097
    29İzleyin

    GitPython before 3.1.53 Config Injection via Submodule Names

    YüksekCVSS 7,3İstismar yokEPSS %0

    gitpython project · gitpython3 Ağu 2026