Vulnerabilities > Gitpython Project

DATE CVE VULNERABILITY TITLE RISK
2024-01-11 CVE-2024-22190 Untrusted Search Path vulnerability in Gitpython Project Gitpython
GitPython is a python library used to interact with Git repositories.
local
low complexity
gitpython-project CWE-426
7.8
2023-08-30 CVE-2023-41040 Path Traversal vulnerability in Gitpython Project Gitpython
GitPython is a python library used to interact with Git repositories.
network
low complexity
gitpython-project CWE-22
6.5
2023-08-28 CVE-2023-40590 Untrusted Search Path vulnerability in Gitpython Project Gitpython
GitPython is a python library used to interact with Git repositories.
local
low complexity
gitpython-project CWE-426
7.8
2023-08-11 CVE-2023-40267 Unspecified vulnerability in Gitpython Project Gitpython
GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from.
network
low complexity
gitpython-project
critical
9.8
2022-12-06 CVE-2022-24439 Improper Input Validation vulnerability in multiple products
All versions of package gitpython are vulnerable to Remote Code Execution (RCE) due to improper user input validation, which makes it possible to inject a maliciously crafted remote URL into the clone command.
network
low complexity
gitpython-project fedoraproject debian CWE-20
critical
9.8