Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-78678

Опубликовано: 25 авг. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

GitPython versions before 3.1.59 contain an incomplete denylist in the unsafe_git_revision_options guard that omits --contents and -S options, allowing attackers to read arbitrary files by passing these options to Repo.blame(). Attackers can supply revision values like --contents=/etc/passwd to leak file contents through the blame result returned to the caller.

A flaw was found in GitPython. An incomplete denylist in the unsafe_git_revision_options guard omits --contents and -S options. This allows an attacker to read arbitrary files by passing these options to the Repo.blame() function. This can lead to information disclosure, as attackers can supply revision values like --contents=/etc/passwd to leak file contents.

Отчет

A flaw was found in GitPython. An incomplete denylist in the unsafe_git_revision_options guard omits --contents and -S options, allowing attackers who control the revision parameter passed to Repo.blame() or Repo.blame_incremental() to read arbitrary files on the system. The attacker can supply revision values like --contents=/etc/passwd to leak file contents through the blame result returned to the caller. This vulnerability requires that the application using GitPython forwards user-influenced input to the blame function's revision parameter.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence-tech-preview/vulnerability-analysis-rhel9Fix deferred
Exploit Intelligenceexploit-intelligence/vulnerability-analysis-rhel9Fix deferred
Migration Toolkit for Applications 8mta/mta-solution-server-rhel9Fix deferred
Red Hat AI Inference Serverrhaiis/vllm-cpu-rhel9Fix deferred
Red Hat AI Inference Serverrhaiis/vllm-tpu-rhel9Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-24/controller-rhel8Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-24/hub-rhel8Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-25/controller-rhel8Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-25/hub-rhel8Not affected
Red Hat Ansible Automation Platform 2ansible-automation-platform-26/controller-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-88
https://bugzilla.redhat.com/show_bug.cgi?id=2523196gitpython: GitPython: Arbitrary file read via Repo.blame()

EPSS

Процентиль: 15%
0.0024
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
24 дня назад

GitPython versions before 3.1.59 contain an incomplete denylist in the unsafe_git_revision_options guard that omits --contents and -S options, allowing attackers to read arbitrary files by passing these options to Repo.blame(). Attackers can supply revision values like --contents=/etc/passwd to leak file contents through the blame result returned to the caller.

CVSS3: 6.5
nvd
24 дня назад

GitPython versions before 3.1.59 contain an incomplete denylist in the unsafe_git_revision_options guard that omits --contents and -S options, allowing attackers to read arbitrary files by passing these options to Repo.blame(). Attackers can supply revision values like --contents=/etc/passwd to leak file contents through the blame result returned to the caller.

CVSS3: 6.5
debian
24 дня назад

GitPython versions before 3.1.59 contain an incomplete denylist in the ...

CVSS3: 6.5
github
9 дней назад

GitPython: Incomplete unsafe_git_revision_options denylist omits --contents/-S, enabling arbitrary file read via Repo.blame()

CVSS3: 6.5
fstec
около 1 месяца назад

Уязвимость функций Repo.blame() и Repo.blame_incremental() механизма защиты unsafe_git_revision_options библиотеки Python для взаимодействия с git-репозиториями GitPython, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 15%
0.0024
Низкий

6.5 Medium

CVSS3