Vulnerabilities > GIT > GIT > 1.5.5.6

DATE CVE VULNERABILITY TITLE RISK
2010-12-17 CVE-2010-3906 Cross-Site Scripting vulnerability in multiple products
Cross-site scripting (XSS) vulnerability in Gitweb 1.7.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) f and (2) fp parameters.
network
git git-scm CWE-79
4.3
2009-06-18 CVE-2009-2108 Resource Management Errors vulnerability in GIT
git-daemon in git 1.4.4.5 through 1.6.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a request containing extra unrecognized arguments.
network
low complexity
git CWE-399
5.0