GitPython 3.1.59 之前的版本中, 未排除 选项,允许攻击者在预期的克隆目标目录之外创建任意 git 目录。攻击者可以向 或 方法传递 参数,将仓库元数据重定向到攻击者控制的文件系统路径,从而实现任意目录的创建以及潜在的可疑钩子(hook)执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| gitpython-developers | GitPython | 0 ~ 3.1.59 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-78676 | 9.8 CRITICAL | GitPython before 3.1.59 Remote Code Execution via Config Injection |
| CVE-2026-78675 | 8.4 HIGH | GitPython before 3.1.59 Local File Content Disclosure via .gitmodules |
| CVE-2026-78678 | 6.5 MEDIUM | GitPython before 3.1.59 Arbitrary File Read via Repo.blame() |
| CVE-2026-78679 | 6.5 MEDIUM | GitPython before 3.1.59 Arbitrary File Read via TagReference.create |
No comments yet