CVE-2026-69097
- EPSS 0.19%
- Veröffentlicht 03.08.2026 13:20:49
- Zuletzt bearbeitet 16.09.2026 20:45:54
GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitrary configuration directives through malicious submodule names. Attackers can inject core.sshCommand or other dangerous config keys...
CVE-2026-67326
- EPSS 0.19%
- Veröffentlicht 01.08.2026 12:22:18
- Zuletzt bearbeitet 16.09.2026 20:45:28
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] section with ho...
CVE-2026-67323
- EPSS 1.02%
- Veröffentlicht 01.08.2026 12:22:18
- Zuletzt bearbeitet 03.09.2026 16:11:29
GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command execution). Addi...
CVE-2026-67324
- EPSS 0.38%
- Veröffentlicht 01.08.2026 12:22:18
- Zuletzt bearbeitet 03.09.2026 16:11:02
GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>) when enforcing its default unsafe-option gate. When an application passes attacker-influenced clone options into Repo.clone_from...
CVE-2026-67322
- EPSS 0.27%
- Veröffentlicht 01.08.2026 12:22:17
- Zuletzt bearbeitet 03.09.2026 16:11:43
GitPython before 3.1.52 is vulnerable to environment-variable exfiltration in Repo.clone_from(). The caller-supplied remote URL is passed through Git.polish_url(), which on non-Cygwin platforms calls os.path.expandvars() on the URL before invoking gi...
CVE-2026-67325
- EPSS 1.48%
- Veröffentlicht 01.08.2026 12:22:16
- Zuletzt bearbeitet 03.09.2026 16:10:18
GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature. Attackers can bypass the unsafe options guard by using abbreviated option names like upload_p instead ...
CVE-2026-44243
- EPSS 0.42%
- Veröffentlicht 07.05.2026 18:22:53
- Zuletzt bearbeitet 07.05.2026 21:12:00
GitPython is a python library used to interact with Git repositories. Prior to version 3.1.48, a vulnerability in GitPython allows attackers who can supply a crafted reference path to an application using GitPython to write, overwrite, move, or delet...
CVE-2026-44244
- EPSS 0.24%
- Veröffentlicht 07.05.2026 18:22:39
- Zuletzt bearbeitet 11.05.2026 17:44:36
GitPython is a python library used to interact with Git repositories. Prior to version 3.1.49, GitConfigParser.set_value() passes values to Python's configparser without validating for newlines. GitPython's own _write() converts embedded newlines int...
CVE-2026-42284
- EPSS 0.57%
- Veröffentlicht 07.05.2026 18:19:20
- Zuletzt bearbeitet 08.05.2026 23:16:36
GitPython is a python library used to interact with Git repositories. Prior to version 3.1.47, _clone() validates multi_options as the original list, then executes shlex.split(" ".join(multi_options)). A string like "--branch main --config core.hooks...
CVE-2026-42215
- EPSS 0.75%
- Veröffentlicht 07.05.2026 18:17:03
- Zuletzt bearbeitet 11.05.2026 17:45:39
GitPython is a python library used to interact with Git repositories. From version 3.1.30 to before version 3.1.47, GitPython blocks dangerous Git options such as --upload-pack and --receive-pack by default, but the equivalent Python kwargs upload_pa...