go-git project kayıtları
go-git project üreticisine ait 11 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-129 Improper Validation of Array Index1
- CWE-180 Incorrect Behavior Order: Validate Before Canonicalize1
- CWE-191 Integer Underflow (Wrap or Wraparound)1
- CWE-20 Improper Input Validation1
- CWE-354 Improper Validation of Integrity Check Value1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
11 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2023-49569İstismar yok | Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clientsgo-git project · go-git · CWE-22 | Kritik9,8 | — | %1,5 | 12 Oca 2024 |
36İzleyin | CVE-2025-21613İstismar yok | go-git has an Argument Injection via the URL fieldgo-git project · go-git · CWE-88 | Kritik9,2 | — | %1,3 | 6 Oca 2025 |
30İzleyin | CVE-2025-21614İstismar yok | go-git clients vulnerable to DoS via maliciously crafted Git server repliesgo-git project · go-git · CWE-400 | Yüksek7,5 | — | %0,7 | 6 Oca 2025 |
30İzleyin | CVE-2023-49568İstismar yok | Maliciously crafted Git server replies can cause DoS on go-git clientsgo-git project · go-git · CWE-20 | Yüksek7,5 | — | %0,7 | 12 Oca 2024 |
29İzleyin | CVE-2026-41506İstismar yok | go-git Credential leak via cross-host redirect in smart HTTP transportgo-git project · go-git · CWE-522 | Yüksek7,4 | — | %0,3 | 8 May 2026 |
28İzleyin | CVE-2026-45022İstismar yok | go-git: Improper parsing of specially crafted objects may lead to inconsistent interpretation compared to upstream Gitgo-git project · go-git · CWE-180 | Yüksek7,0 | — | %0,2 | 27 May 2026 |
21İzleyin | CVE-2026-45571İstismar yok | go-git: Crafted repositories may modify main and submodule .git directoriesgo-git project · go-git · CWE-22 | Orta5,4 | — | %0,3 | 27 May 2026 |
20İzleyin | CVE-2026-34165İstismar yok | go-git: Maliciously crafted idx file can cause asymmetric memory consumptiongo-git project · go-git · CWE-191 | Orta5,0 | — | %0,1 | 31 Mar 2026 |
17İzleyin | CVE-2026-25934İstismar yok | go-git improperly verifies data integrity values for .idx and .pack filesgo-git project · go-git · CWE-354 | Orta4,3 | — | %0,2 | 9 Şub 2026 |
11İzleyin | CVE-2026-33762İstismar yok | go-git: Missing validation decoding Index v4 files leads to panicgo-git project · go-git · CWE-129 | Düşük2,8 | — | %0,2 | 31 Mar 2026 |
9İzleyin | CVE-2026-45570İstismar yok | go-git: Improper single-quote escaping in go-git SSH transportgo-git project · go-git · CWE-116 | Düşük2,3 | — | %0,4 | 27 May 2026 |
- CVE-2023-4956939İzleyin
Maliciously crafted Git server replies can lead to path traversal and RCE on go-git clients
KritikCVSS 9,8İstismar yokEPSS %2go-git project · go-git12 Oca 2024
- CVE-2025-2161336İzleyin
go-git has an Argument Injection via the URL field
KritikCVSS 9,2İstismar yokEPSS %1go-git project · go-git6 Oca 2025
- CVE-2025-2161430İzleyin
go-git clients vulnerable to DoS via maliciously crafted Git server replies
YüksekCVSS 7,5İstismar yokEPSS %1go-git project · go-git6 Oca 2025
- CVE-2023-4956830İzleyin
Maliciously crafted Git server replies can cause DoS on go-git clients
YüksekCVSS 7,5İstismar yokEPSS %1go-git project · go-git12 Oca 2024
- CVE-2026-4150629İzleyin
go-git Credential leak via cross-host redirect in smart HTTP transport
YüksekCVSS 7,4İstismar yokEPSS %0go-git project · go-git8 May 2026
- CVE-2026-4502228İzleyin
go-git: Improper parsing of specially crafted objects may lead to inconsistent interpretation compared to upstream Git
YüksekCVSS 7,0İstismar yokEPSS %0go-git project · go-git27 May 2026
- CVE-2026-4557121İzleyin
go-git: Crafted repositories may modify main and submodule .git directories
OrtaCVSS 5,4İstismar yokEPSS %0go-git project · go-git27 May 2026
- CVE-2026-3416520İzleyin
go-git: Maliciously crafted idx file can cause asymmetric memory consumption
OrtaCVSS 5,0İstismar yokEPSS %0go-git project · go-git31 Mar 2026
- CVE-2026-2593417İzleyin
go-git improperly verifies data integrity values for .idx and .pack files
OrtaCVSS 4,3İstismar yokEPSS %0go-git project · go-git9 Şub 2026
- CVE-2026-3376211İzleyin
go-git: Missing validation decoding Index v4 files leads to panic
DüşükCVSS 2,8İstismar yokEPSS %0go-git project · go-git31 Mar 2026
- CVE-2026-455709İzleyin
go-git: Improper single-quote escaping in go-git SSH transport
DüşükCVSS 2,3İstismar yokEPSS %0go-git project · go-git27 May 2026