Описание
Command injection in git-clone
All versions of package git-clone are vulnerable to Command Injection due to insecure usage of the --upload-pack feature of git.
Credits
Credit to @lirantal for discovering this vulnerability.
Пакеты
Наименование
git-clone
npm
Затронутые версииВерсия исправления
<= 0.2.0
Отсутствует
Связанные уязвимости
CVSS3: 8.1
nvd
больше 3 лет назад
All versions of package git-clone are vulnerable to Command Injection due to insecure usage of the --upload-pack feature of git.