Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-6951

Опубликовано: 25 апр. 2026
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for CVE-2022-25912 that blocks the -c option but not the equivalent --config form. If untrusted input can reach the options argument passed to simple-git, an attacker may still achieve remote code execution by enabling protocol.ext.allow=always and using an ext:: clone source.

A flaw was found in simple-git. A remote attacker could exploit this vulnerability by providing specially crafted input to the options argument, bypassing a previous security fix. This incomplete fix allows an attacker to enable certain protocol extensions, which could lead to remote code execution.

Отчет

This Important flaw in the simple-git library allows for Remote Code Execution when untrusted input is passed to the options argument. An attacker could bypass a previous security fix by enabling specific protocol extensions, leading to arbitrary code execution.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8grafanaWill not fix
Red Hat Enterprise Linux 9grafanaNot affected
Red Hat JBoss Enterprise Application Platform 8simple-gitNot affected
Red Hat JBoss Enterprise Application Platform Expansion Packsimple-gitNot affected
Red Hat Process Automation 7simple-gitNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-88
https://bugzilla.redhat.com/show_bug.cgi?id=2461750simple-git: simple-git: Remote Code Execution due to incomplete fix bypass

EPSS

Процентиль: 55%
0.00877
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for [CVE-2022-25912](https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-3112221) that blocks the -c option but not the equivalent --config form. If untrusted input can reach the options argument passed to simple-git, an attacker may still achieve remote code execution by enabling protocol.ext.allow=always and using an ext:: clone source.

CVSS3: 9.8
github
3 месяца назад

simple-git is vulnerable to Remote Code Execution

CVSS3: 9.8
fstec
3 месяца назад

Уязвимость библиотеки simple-git программной платформы Node.js, позволяющая нарушителю изменить конфигурацию уязвимого программного обеспечения и выполнить произвольный код

EPSS

Процентиль: 55%
0.00877
Низкий

8.8 High

CVSS3