Vulnerabilities > GIT FOR Windows Project

DATE CVE VULNERABILITY TITLE RISK
2023-04-25 CVE-2023-29011 Uncontrolled Search Path Element vulnerability in GIT for Windows Project GIT for Windows
Git for Windows, the Windows port of Git, ships with an executable called `connect.exe`, which implements a SOCKS5 proxy that can be used to connect e.g.
local
low complexity
git-for-windows-project CWE-427
7.8
2023-04-25 CVE-2023-29012 Uncontrolled Search Path Element vulnerability in GIT for Windows Project GIT for Windows
Git for Windows is the Windows port of Git.
local
low complexity
git-for-windows-project CWE-427
7.8
2023-04-25 CVE-2023-25815 Use of Externally-Controlled Format String vulnerability in multiple products
In Git for Windows, the Windows port of Git, no localized messages are shipped with the installer.
2.2
2023-02-14 CVE-2023-22743 Untrusted Search Path vulnerability in GIT for Windows Project GIT for Windows
Git for Windows is the Windows port of the revision control system Git.
local
low complexity
git-for-windows-project CWE-426
7.3
2023-02-14 CVE-2023-23618 Untrusted Search Path vulnerability in GIT for Windows Project GIT for Windows
Git for Windows is the Windows port of the revision control system Git.
local
low complexity
git-for-windows-project CWE-426
7.8
2022-04-12 CVE-2022-24767 Uncontrolled Search Path Element vulnerability in multiple products
GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.
7.8
2016-11-11 CVE-2016-9274 Untrusted Search Path vulnerability in GIT FOR Windows Project GIT FOR Windows
Untrusted search path vulnerability in Git 1.x for Windows allows local users to gain privileges via a Trojan horse git.exe file in the current working directory.
4.4