Search CVE reports


Toggle filters

21 – 22 of 22 results


CVE-2023-40267

Medium priority

Some fixes available 6 of 12

GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from. NOTE: this issue exists because of an incomplete fix for CVE-2022-24439.

1 affected package

python-git

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
python-git Needs evaluation Needs evaluation Fixed Fixed Fixed
Show less packages

CVE-2022-24439

Medium priority

Some fixes available 6 of 10

All versions of package gitpython are vulnerable to Remote Code Execution (RCE) due to improper user input validation, which makes it possible to inject a maliciously crafted remote URL into the clone command. Exploiting this...

2 affected packages

gitpython, python-git

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gitpython Not in release Not in release Not in release
python-git Not affected Not affected Fixed Fixed Fixed
Show less packages