Me-And Cygwin-Git vulnerabilities
2 known vulnerabilities affecting me-and/cygwin-git.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2021-29468HIGHCVSS 8.8fixed in 2.31.1-22021-04-29
CVE-2021-29468 [HIGH] CWE-20 Arbitrary code execution when checking out an attacker-controlled Git branch
Arbitrary code execution when checking out an attacker-controlled Git branch
Cygwin Git is a patch set for the git command line tool for the cygwin environment. A specially crafted repository that contains symbolic links as well as files with backslash characters in the file name may cause just-checked out code to be executed while checking out a repository using Git on Cygwin. The problem
cvelistv5
CVE-2019-1354HIGHCVSS 8.8fixed in 2.31.1-22020-01-24
CVE-2019-1354 [HIGH] CWE-20 CVE-2019-1354: A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input,
A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual Studio Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1349, CVE-2019-1350, CVE-2019-1352, CVE-2019-1387.
nvd