CVE-2026-67323
EUVD-2026-5180501.08.2026, 13:17
GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command execution). Additionally, Repo.iter_commits() and Repo.blame() do not check for leading-dash revision arguments, so a revision like --output=<path> can cause Git to open and truncate an arbitrary file. Exploitation requires an application that passes attacker-controlled arguments to these methods.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gitpython_project | gitpython | 𝑥 < 3.1.51 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases