← Back

Giting

giting

Vendor: Mangoraft • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mangoraft
1Giting
Nov 21, 2024
Feb 28, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
giting version prior to 0.0.8 allows execution of arbritary commands. The first argument "repo" of function "pull()" is executed by the package without any validation.