Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-6951 Versions of the package simple-git before 3.36.0 are vulnerable to Remote Code Execution (RCE) due to an incomplete fix for [CVE-2022-25912](https://… Simple Git 3.36.0+ Fix from $2,3002026-04-25 HIGH 8.1 CVE-2026-28291 simple-git enables running native Git commands from JavaScript. Versions up to and including 3.31.1 allow execution of arbitrary commands through Git… Simple Git 3.32.0+ Fix from $1,9502026-04-13 CRITICAL 9.8 CVE-2026-28292 `simple-git`, an interface for running git commands in any node.js application, has an issue in versions 3.15.0 through 3.32.2 that allows an attacke… Simple Git 3.32.2+ Fix from $2,3002026-03-10 CRITICAL 9.8 CVE-2022-25860 Versions of the package simple-git before 3.16.0 are vulnerable to Remote Code Execution (RCE) via the clone(), pull(), push() and listRemote() metho… Simple Git 3.16.0+ Fix from $2,3002023-01-26 CRITICAL 9.8 CVE-2022-25912 The package simple-git before 3.15.0 are vulnerable to Remote Code Execution (RCE) when enabling the ext transport protocol, which makes it exploitab… Simple Git 3.15.0+ Fix from $2,3002022-12-06 CRITICAL 9.8 CVE-2022-24066 The package simple-git before 3.5.0 are vulnerable to Command Injection due to an incomplete fix of [CVE-2022-24433](https://security.snyk.io/vuln/SN… Simple Git 3.5.0+ Fix from $2,3002022-04-01 CRITICAL 9.8 CVE-2022-24433 The package simple-git before 3.3.0 are vulnerable to Command Injection via argument injection. When calling the .fetch(remote, branch, handlerFn) fu… Simple Git 3.3.0+ Fix from $2,3002022-03-11