gitpython project kayıtları
gitpython project üreticisine ait 35 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')9
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')5
- CWE-73 External Control of File Name or Path3
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
35 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2022-24439Kavram kanıtı | Remote Code Execution (RCE)gitpython project · gitpython · CWE-20 | Kritik9,8 | — | %5,7 | 6 Ara 2022 |
39İzleyin | CVE-2023-40267İstismar yok | GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from.gitpython project · gitpython | Kritik9,8 | — | %1,2 | 11 Ağu 2023 |
39İzleyin | CVE-2026-42284İstismar yok | GitPython: Unsafe option check validates multi_options before shlex.split transforms itgitpython project · gitpython · CWE-88 | Kritik9,8 | — | %0,7 | 7 May 2026 |
37İzleyin | CVE-2026-78676İstismar yok | GitPython before 3.1.59 Remote Code Execution via Config Injectiongitpython project · gitpython · CWE-88 | Kritik9,3 | — | %0,8 | 24 Ağu 2026 |
37İzleyin | CVE-2026-67324İstismar yok | GitPython 3.1.50 Authentication Bypass via Joined Short Optionsgitpython project · gitpython · CWE-78 | Kritik9,3 | — | %0,6 | 1 Ağu 2026 |
35İzleyin | CVE-2026-67325İstismar yok | GitPython before 3.1.51 Command Injection via option prefix abbreviationgitpython project · gitpython · CWE-78 | Yüksek8,7 | — | %2,2 | 1 Ağu 2026 |
35İzleyin | CVE-2026-42215İstismar yok | GitPython: Command injection via Git options bypassgitpython project · gitpython · CWE-78 | Yüksek8,8 | — | %0,9 | 7 May 2026 |
34İzleyin | CVE-2026-67323İstismar yok | GitPython before 3.1.51 Command Injection via unguarded Git optionsgitpython project · gitpython · CWE-77 | Yüksek8,6 | — | %1,3 | 1 Ağu 2026 |
34İzleyin | CVE-2026-73625İstismar yok | GitPython before 3.1.54 Remote Code Execution via kwarg value smugglinggitpython project · gitpython · CWE-78 | Yüksek8,7 | — | %0,9 | 13 Ağu 2026 |
34İzleyin | CVE-2026-76220İstismar yok | GitPython before 3.1.58 Command Execution via split_single_char_optionsgitpython project · gitpython · CWE-88 | Yüksek8,7 | — | %0,9 | 19 Ağu 2026 |
34İzleyin | CVE-2026-76221İstismar yok | GitPython before 3.1.58 Config Injection via option-namegitpython project · gitpython · CWE-74 | Yüksek8,7 | — | %0,8 | 19 Ağu 2026 |
34İzleyin | CVE-2026-78677İstismar yok | GitPython before 3.1.59 Path Traversal via separate-git-dirgitpython project · gitpython · CWE-22 | Yüksek8,7 | — | %0,7 | 24 Ağu 2026 |
34İzleyin | CVE-2026-87819İstismar yok | GitPython before 3.1.60 Denial of Service via ReDoSgitpython project · gitpython · CWE-1333 | Yüksek8,7 | — | %0,5 | 9 Eyl 2026 |
34İzleyin | CVE-2026-73622İstismar yok | GitPython before 3.1.55 Environment Variable Exfiltration via Remote.add()gitpython project · gitpython · CWE-200 | Yüksek8,7 | — | %0,5 | 13 Ağu 2026 |
34İzleyin | CVE-2026-87817İstismar yok | GitPython before 3.1.60 Remote Code Execution via Git Directory Impersonationgitpython project · gitpython · CWE-94 | Yüksek8,7 | — | %0,4 | 9 Eyl 2026 |
34İzleyin | CVE-2026-67322İstismar yok | GitPython before 3.1.52 Environment Variable Exfiltration via clone_fromgitpython project · gitpython · CWE-200 | Yüksek8,7 | — | %0,3 | 1 Ağu 2026 |
34İzleyin | CVE-2026-78675İstismar yok | GitPython before 3.1.59 Local File Content Disclosure via .gitmodulesgitpython project · gitpython · CWE-73 | Yüksek8,6 | — | %0,2 | 24 Ağu 2026 |
33İzleyin | CVE-2026-76222İstismar yok | GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Namegitpython project · gitpython · CWE-22 | Yüksek8,4 | — | %0,4 | 19 Ağu 2026 |
31İzleyin | CVE-2023-40590İstismar yok | Untrusted search path on Windows systems leading to arbitrary code executiongitpython project · gitpython · CWE-426 | Yüksek7,8 | — | %0,5 | 28 Ağu 2023 |
31İzleyin | CVE-2026-44243İstismar yok | GitPython: Path traversal in GitPython reference APIs allows arbitrary file write and delete outside the repositorygitpython project · gitpython · CWE-22 | Yüksek7,8 | — | %0,4 | 7 May 2026 |
31İzleyin | CVE-2024-22190İstismar yok | Untrusted search path under some conditions on Windows allows arbitrary code executiongitpython project · gitpython · CWE-426 | Yüksek7,8 | — | %0,3 | 10 Oca 2024 |
31İzleyin | CVE-2026-44244İstismar yok | GitPython: Newline injection in config_writer().set_value() enables RCE via core.hooksPathgitpython project · gitpython · CWE-94 | Yüksek7,8 | — | %0,2 | 7 May 2026 |
30İzleyin | CVE-2026-73623İstismar yok | GitPython before 3.1.54 Remote Code Execution via --templategitpython project · gitpython · CWE-78 | Yüksek7,7 | — | %0,8 | 13 Ağu 2026 |
30İzleyin | CVE-2026-76218İstismar yok | GitPython before 3.1.58 Remote Code Execution via Repo.initgitpython project · gitpython · CWE-88 | Yüksek7,7 | — | %0,8 | 19 Ağu 2026 |
29İzleyin | CVE-2026-69097İstismar yok | GitPython before 3.1.53 Config Injection via Submodule Namesgitpython project · gitpython · CWE-74 | Yüksek7,3 | — | %0,3 | 3 Ağu 2026 |
- CVE-2022-2443941Planlayın
Remote Code Execution (RCE)
KritikCVSS 9,8Kavram kanıtıEPSS %6gitpython project · gitpython6 Ara 2022
- CVE-2023-4026739İzleyin
GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from.
KritikCVSS 9,8İstismar yokEPSS %1gitpython project · gitpython11 Ağu 2023
- CVE-2026-4228439İzleyin
GitPython: Unsafe option check validates multi_options before shlex.split transforms it
KritikCVSS 9,8İstismar yokEPSS %1gitpython project · gitpython7 May 2026
- CVE-2026-7867637İzleyin
GitPython before 3.1.59 Remote Code Execution via Config Injection
KritikCVSS 9,3İstismar yokEPSS %1gitpython project · gitpython24 Ağu 2026
- CVE-2026-6732437İzleyin
GitPython 3.1.50 Authentication Bypass via Joined Short Options
KritikCVSS 9,3İstismar yokEPSS %1gitpython project · gitpython1 Ağu 2026
- CVE-2026-6732535İzleyin
GitPython before 3.1.51 Command Injection via option prefix abbreviation
YüksekCVSS 8,7İstismar yokEPSS %2gitpython project · gitpython1 Ağu 2026
- CVE-2026-4221535İzleyin
GitPython: Command injection via Git options bypass
YüksekCVSS 8,8İstismar yokEPSS %1gitpython project · gitpython7 May 2026
- CVE-2026-6732334İzleyin
GitPython before 3.1.51 Command Injection via unguarded Git options
YüksekCVSS 8,6İstismar yokEPSS %1gitpython project · gitpython1 Ağu 2026
- CVE-2026-7362534İzleyin
GitPython before 3.1.54 Remote Code Execution via kwarg value smuggling
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython13 Ağu 2026
- CVE-2026-7622034İzleyin
GitPython before 3.1.58 Command Execution via split_single_char_options
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython19 Ağu 2026
- CVE-2026-7622134İzleyin
GitPython before 3.1.58 Config Injection via option-name
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython19 Ağu 2026
- CVE-2026-7867734İzleyin
GitPython before 3.1.59 Path Traversal via separate-git-dir
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython24 Ağu 2026
- CVE-2026-8781934İzleyin
GitPython before 3.1.60 Denial of Service via ReDoS
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython9 Eyl 2026
- CVE-2026-7362234İzleyin
GitPython before 3.1.55 Environment Variable Exfiltration via Remote.add()
YüksekCVSS 8,7İstismar yokEPSS %1gitpython project · gitpython13 Ağu 2026
- CVE-2026-8781734İzleyin
GitPython before 3.1.60 Remote Code Execution via Git Directory Impersonation
YüksekCVSS 8,7İstismar yokEPSS %0gitpython project · gitpython9 Eyl 2026
- CVE-2026-6732234İzleyin
GitPython before 3.1.52 Environment Variable Exfiltration via clone_from
YüksekCVSS 8,7İstismar yokEPSS %0gitpython project · gitpython1 Ağu 2026
- CVE-2026-7867534İzleyin
GitPython before 3.1.59 Local File Content Disclosure via .gitmodules
YüksekCVSS 8,6İstismar yokEPSS %0gitpython project · gitpython24 Ağu 2026
- CVE-2026-7622233İzleyin
GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Name
YüksekCVSS 8,4İstismar yokEPSS %0gitpython project · gitpython19 Ağu 2026
- CVE-2023-4059031İzleyin
Untrusted search path on Windows systems leading to arbitrary code execution
YüksekCVSS 7,8İstismar yokEPSS %1gitpython project · gitpython28 Ağu 2023
- CVE-2026-4424331İzleyin
GitPython: Path traversal in GitPython reference APIs allows arbitrary file write and delete outside the repository
YüksekCVSS 7,8İstismar yokEPSS %0gitpython project · gitpython7 May 2026
- CVE-2024-2219031İzleyin
Untrusted search path under some conditions on Windows allows arbitrary code execution
YüksekCVSS 7,8İstismar yokEPSS %0gitpython project · gitpython10 Oca 2024
- CVE-2026-4424431İzleyin
GitPython: Newline injection in config_writer().set_value() enables RCE via core.hooksPath
YüksekCVSS 7,8İstismar yokEPSS %0gitpython project · gitpython7 May 2026
- CVE-2026-7362330İzleyin
GitPython before 3.1.54 Remote Code Execution via --template
YüksekCVSS 7,7İstismar yokEPSS %1gitpython project · gitpython13 Ağu 2026
- CVE-2026-7621830İzleyin
GitPython before 3.1.58 Remote Code Execution via Repo.init
YüksekCVSS 7,7İstismar yokEPSS %1gitpython project · gitpython19 Ağu 2026
- CVE-2026-6909729İzleyin
GitPython before 3.1.53 Config Injection via Submodule Names
YüksekCVSS 7,3İstismar yokEPSS %0gitpython project · gitpython3 Ağu 2026