Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Git HIGH 8.8
CVE-2024-52005

Git is a source code management tool. When cloning from a server (or fetching, or pushing), informational or error messages are transported from the …

Fix: after 2.48.1
Fix from $1,950 2025-01-15
Git HIGH 7.5
CVE-2024-52006

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full acc…

Fix: 2.40.4 / 2.41.3+
Fix from $1,950 2025-01-14
Git CRITICAL 9.0
CVE-2024-32002EPSS 29%

Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be c…

Fix: 2.39.4 / 2.40.2+
Fix from $2,300 2024-05-14
Git CRITICAL 9.8
CVE-2022-25648

The package git before 1.11.0 are vulnerable to Command Injection via git argument injection. When calling the fetch(remote = 'origin', opts = {}) fu…

Fix: 1.11.0+
Fix from $2,300 2022-04-19
Git HIGH 7.5
CVE-2020-5260EPSS 10%

Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. Git us…

Fix: 2.17.4 / 2.18.3+
Fix from $1,950 2020-04-14
Git Shell HIGH 8.8
CVE-2017-8386EPSS 12%

git-shell in git before 2.4.12, 2.5.x before 2.5.6, 2.6.x before 2.6.7, 2.7.x before 2.7.5, 2.8.x before 2.8.5, 2.9.x before 2.9.4, 2.10.x before 2.1…

No fix yet
Fix from $1,950 2017-06-01
Git MEDIUM 5.0
CVE-2009-2108EPSS 6%

git-daemon in git 1.4.4.5 through 1.6.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a request contai…

Patch available
Fix from $1,600 2009-06-18
Git HIGH 7.5
CVE-2008-5516

The web interface in git (gitweb) 1.5.x before 1.5.5 allows remote attackers to execute arbitrary commands via shell metacharacters related to git_se…

Mitigation only
Fix from $1,950 2009-01-20
Git HIGH 7.5
CVE-2008-5517EPSS 12%

The web interface in git (gitweb) 1.5.x before 1.5.6 allows remote attackers to execute arbitrary commands via shell metacharacters related to (1) gi…

Patch available
Fix from $1,950 2009-01-13
Git HIGH 7.5
CVE-2008-3546

Stack-based buffer overflow in the (1) diff_addremove and (2) diff_change functions in GIT before 1.5.6.4 might allow local users to execute arbitrar…

No fix yet
Fix from $1,950 2008-08-07
Git HIGH 7.5
CVE-2006-0477

Buffer overflow in git-checkout-index in GIT before 1.1.5 allows remote attackers to execute arbitrary code via an index file with a long symbolic li…

Patch available
Fix from $1,950 2006-01-31