Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

fstec логотип

BDU:2026-12704

около 1 месяца назад

Уязвимость функции Repo.clone_from() и Repo.clone() модуля git/repo/base.py библиотеки Python для взаимодействия с git-репозиториями GitPython, позволяющая нарушителю записывать произвольные файлы

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260908-80-0106

14 дней назад

Уязвимость GitPython

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260908-73-0093

14 дней назад

Уязвимость GitPython

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-78677

27 дней назад

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing attackers to create arbitrary git directories outside the intended clone destination. Attackers can pass a separate_git_dir parameter to Repo.clone_from() or Repo.clone() to redirect repository metadata to an attacker-controlled filesystem path, enabling arbitrary directory creation and potential hook execution.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-78677

27 дней назад

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing attackers to create arbitrary git directories outside the intended clone destination. Attackers can pass a separate_git_dir parameter to Repo.clone_from() or Repo.clone() to redirect repository metadata to an attacker-controlled filesystem path, enabling arbitrary directory creation and potential hook execution.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-78677

27 дней назад

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-8mcc-hrx5-hvxc

13 дней назад

GitPython: clone_from()/clone() omit --separate-git-dir from unsafe_git_clone_options, enabling arbitrary git-directory creation outside the destination

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:4072-1

13 дней назад

Security update for python-GitPython

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2026-12704

Уязвимость функции Repo.clone_from() и Repo.clone() модуля git/repo/base.py библиотеки Python для взаимодействия с git-репозиториями GitPython, позволяющая нарушителю записывать произвольные файлы

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260908-80-0106

Уязвимость GitPython

CVSS3: 7.5
0%
Низкий
14 дней назад
redos логотип
ROS-20260908-73-0093

Уязвимость GitPython

CVSS3: 7.5
0%
Низкий
14 дней назад
ubuntu логотип
CVE-2026-78677

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing attackers to create arbitrary git directories outside the intended clone destination. Attackers can pass a separate_git_dir parameter to Repo.clone_from() or Repo.clone() to redirect repository metadata to an attacker-controlled filesystem path, enabling arbitrary directory creation and potential hook execution.

CVSS3: 7.5
0%
Низкий
27 дней назад
nvd логотип
CVE-2026-78677

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing attackers to create arbitrary git directories outside the intended clone destination. Attackers can pass a separate_git_dir parameter to Repo.clone_from() or Repo.clone() to redirect repository metadata to an attacker-controlled filesystem path, enabling arbitrary directory creation and potential hook execution.

CVSS3: 7.5
0%
Низкий
27 дней назад
debian логотип
CVE-2026-78677

GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone ...

CVSS3: 7.5
0%
Низкий
27 дней назад
github логотип
GHSA-8mcc-hrx5-hvxc

GitPython: clone_from()/clone() omit --separate-git-dir from unsafe_git_clone_options, enabling arbitrary git-directory creation outside the destination

CVSS3: 7.5
0%
Низкий
13 дней назад
suse-cvrf логотип
SUSE-SU-2026:4072-1

Security update for python-GitPython

13 дней назад

Уязвимостей на страницу