Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-76218

Опубликовано: 19 авг. 2026
Источник: debian
EPSS Низкий

Описание

GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards unsafe git options without validation. Attackers can supply a template parameter pointing to a directory with malicious git hooks that execute arbitrary code when git operations are performed on the initialized repository.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-gitunfixedpackage

Примечания

  • https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-9rj7-rf2p-w77r

EPSS

Процентиль: 40%
0.00492
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
8 дней назад

(GitPython before 3.1.58 contains a remote code execution vulnerability ...)

CVSS3: 7.5
nvd
8 дней назад

GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards unsafe git options without validation. Attackers can supply a template parameter pointing to a directory with malicious git hooks that execute arbitrary code when git operations are performed on the initialized repository.

CVSS3: 7.5
github
8 дней назад

GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards unsafe git options without validation. Attackers can supply a template parameter pointing to a directory with malicious git hooks that execute arbitrary code when git operations are performed on the initialized repository.

EPSS

Процентиль: 40%
0.00492
Низкий