Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-78679

24 дня назад

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-78679

24 дня назад

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-78679

24 дня назад

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-78679

24 дня назад

GitPython before 3.1.59 contains an arbitrary file read vulnerability ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3wxw-xv34-2frg

9 дней назад

GitPython: TagReference.create positional reference bypasses kwargs-only --file guard, enabling arbitrary file read (incomplete fix of 3af0c251)

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:4072-1

9 дней назад

Security update for python-GitPython

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-78679

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
0%
Низкий
24 дня назад
redhat логотип
CVE-2026-78679

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
0%
Низкий
24 дня назад
nvd логотип
CVE-2026-78679

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.

CVSS3: 6.5
0%
Низкий
24 дня назад
debian логотип
CVE-2026-78679

GitPython before 3.1.59 contains an arbitrary file read vulnerability ...

CVSS3: 6.5
0%
Низкий
24 дня назад
github логотип
GHSA-3wxw-xv34-2frg

GitPython: TagReference.create positional reference bypasses kwargs-only --file guard, enabling arbitrary file read (incomplete fix of 3af0c251)

CVSS3: 6.5
0%
Низкий
9 дней назад
suse-cvrf логотип
SUSE-SU-2026:4072-1

Security update for python-GitPython

9 дней назад

Уязвимостей на страницу