Количество 8
Количество 8
GHSA-hh9p-6wh2-4mfc
GitPython: Arbitrary file read via --pathspec-from-file in IndexFile.remove() and Head.checkout()
CVE-2026-76217
GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr.
CVE-2026-76217
GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr.
CVE-2026-76217
GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr.
CVE-2026-76217
GitPython versions before 3.1.58 fail to validate options passed to gi ...
ROS-20260901-80-0024
Уязвимость GitPython
ROS-20260901-73-0019
Уязвимость GitPython
SUSE-SU-2026:4072-1
Security update for python-GitPython
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-hh9p-6wh2-4mfc GitPython: Arbitrary file read via --pathspec-from-file in IndexFile.remove() and Head.checkout() | CVSS3: 6.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-76217 GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr. | CVSS3: 6.5 | 0% Низкий | 30 дней назад | |
CVE-2026-76217 GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr. | CVSS3: 6.5 | 0% Низкий | 30 дней назад | |
CVE-2026-76217 GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec-file-nul parameters to read arbitrary files accessible to the process, with full file contents returned in GitCommandError.stderr. | CVSS3: 6.5 | 0% Низкий | 30 дней назад | |
CVE-2026-76217 GitPython versions before 3.1.58 fail to validate options passed to gi ... | CVSS3: 6.5 | 0% Низкий | 30 дней назад | |
ROS-20260901-80-0024 Уязвимость GitPython | CVSS3: 6.5 | 0% Низкий | 17 дней назад | |
ROS-20260901-73-0019 Уязвимость GitPython | CVSS3: 6.5 | 0% Низкий | 17 дней назад | |
SUSE-SU-2026:4072-1 Security update for python-GitPython | 10 дней назад |
Уязвимостей на страницу