| CVE-2026-45570 |
critical |
9.6 |
9.6 |
|
|
|
8d ago |
go-git is an extensible git implementation library written in pure Go. Prior to 5.19.1 and 6.0.0-alpha.4, go-git's SSH transport constructs the remote exec command by wrapping the repository path in … |
| CVE-2025-21614 |
high |
— |
8.0 |
|
|
|
1y ago |
go-git is a highly extensible git implementation library written in pure Go. A denial of service (DoS) vulnerability was discovered in go-git versions prior to v5.13. This vulnerability allows an att… |
| CVE-2026-34165 |
unknown |
— |
— |
|
|
|
2mo ago |
go-git is an extensible git implementation library written in pure Go. From version 5.0.0 to before version 5.17.1, a vulnerability has been identified in which a maliciously crafted .idx file can ca… |
| CVE-2026-33762 |
unknown |
— |
— |
|
|
|
2mo ago |
go-git is an extensible git implementation library written in pure Go. Prior to version 5.17.1, go-git’s index decoder for format version 4 fails to validate the path name prefix length before applyi… |
| CVE-2026-25934 |
unknown |
— |
— |
|
|
|
4mo ago |
go-git is a highly extensible git implementation library written in pure Go. Prior to 5.16.5, a vulnerability was discovered in go-git whereby data integrity values for .pack and .idx files were not … |