simple-git project kayıtları
simple-git project üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 7
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')2
- CWE-94 Improper Control of Generation of Code ('Code Injection')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2022-24066İstismar yok | The package simple-git before 3.5.0 are vulnerable to Command Injection due to an incomplete fix of [CVE-2022-24433](https://security.snyk.isimple-git project · simple-git · CWE-88 | Kritik9,8 | — | %3,9 | 1 Nis 2022 |
40Planlayın | CVE-2022-24433İstismar yok | The package simple-git before 3.3.0 are vulnerable to Command Injection via argument injection.simple-git project · simple-git · CWE-88 | Kritik9,8 | — | %3,5 | 11 Mar 2022 |
40Planlayın | CVE-2022-25912İstismar yok | Remote Code Execution (RCE)simple-git project · simple-git · CWE-78 | Kritik9,8 | — | %2,9 | 6 Ara 2022 |
40Planlayın | CVE-2022-25860İstismar yok | Versions of the package simple-git before 3.16.0 are vulnerable to Remote Code Execution (RCE) via the clone(), pull(), push() and listRemotsimple-git project · simple-git · CWE-94 | Kritik9,8 | — | %2,7 | 26 Oca 2023 |
39İzleyin | CVE-2026-28292İstismar yok | simple-git has blockUnsafeOperationsPlugin bypass via case-insensitive protocol.allow config key that enables RCEsimple-git project · simple-git · CWE-78 | Kritik9,8 | — | %1,3 | 10 Mar 2026 |
32İzleyin | CVE-2026-6951Kavram kanıtı | Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for [CVE-2022-25912]simple-git project · simple-git · CWE-94 | Yüksek8,2 | — | %1,0 | 25 Nis 2026 |
32İzleyin | CVE-2026-28291İstismar yok | simple-git has Command Execution via Option-Parsing Bypasssimple-git project · simple-git · CWE-78 | Yüksek8,1 | — | %0,9 | 13 Nis 2026 |
- CVE-2022-2406640Planlayın
The package simple-git before 3.5.0 are vulnerable to Command Injection due to an incomplete fix of [CVE-2022-24433](https://security.snyk.i
KritikCVSS 9,8İstismar yokEPSS %4simple-git project · simple-git1 Nis 2022
- CVE-2022-2443340Planlayın
The package simple-git before 3.3.0 are vulnerable to Command Injection via argument injection.
KritikCVSS 9,8İstismar yokEPSS %4simple-git project · simple-git11 Mar 2022
- CVE-2022-2591240Planlayın
Remote Code Execution (RCE)
KritikCVSS 9,8İstismar yokEPSS %3simple-git project · simple-git6 Ara 2022
- CVE-2022-2586040Planlayın
Versions of the package simple-git before 3.16.0 are vulnerable to Remote Code Execution (RCE) via the clone(), pull(), push() and listRemot
KritikCVSS 9,8İstismar yokEPSS %3simple-git project · simple-git26 Oca 2023
- CVE-2026-2829239İzleyin
simple-git has blockUnsafeOperationsPlugin bypass via case-insensitive protocol.allow config key that enables RCE
KritikCVSS 9,8İstismar yokEPSS %1simple-git project · simple-git10 Mar 2026
- CVE-2026-695132İzleyin
Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for [CVE-2022-25912]
YüksekCVSS 8,2Kavram kanıtıEPSS %1simple-git project · simple-git25 Nis 2026
- CVE-2026-2829132İzleyin
simple-git has Command Execution via Option-Parsing Bypass
YüksekCVSS 8,1İstismar yokEPSS %1simple-git project · simple-git13 Nis 2026