PT-2026-71447 · Pypi+1 · Gitpython+1
CVSS v4.0
7.1
High
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
GitPython versions prior to 3.1.57
Description
An incomplete denylist in the
unsafe git archive options guard allows attackers to provide the --add-file and --add-virtual-file options to the Repo.archive() function. This can be exploited to read arbitrary files from the filesystem and include them in the generated archive.Recommendations
Update GitPython to version 3.1.57 or later.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Gitpython
Red Os