Vulnerabilities
Last updated 1 hour ago
| Package | Summary | Severity | Published | Modified |
|---|---|---|---|---|
|
|
Dulwich: Arbitrary File Write (RCE) on Windows via Unvalidated Drive Letters in Tree Paths | High Risk 8.8 | 6 hours ago | 5 hours ago |
|
|
Dulwich: Infinite Loop Denial of Service (DoS) in Packfile Object Resolution | Medium Risk 6.5 | 6 hours ago | 6 hours ago |
|
|
Dulwich: Symlink directory traversal in filter-branch index_filter via cross-commit state persistence | High Risk 8.6 | 6 hours ago | 6 hours ago |
|
|
Dulwich: Symlink write-through in checkout(paths=[]) via raw os.open bypasses all symlink protections | High Risk 8.6 | 6 hours ago | 6 hours ago |
|
|
Dulwich: Symlink directory traversal in stash pop allows arbitrary file write via intermediate directory symlinks | High Risk 8.6 | 6 hours ago | 6 hours ago |
|
|
Dulwich Vulnerable to Command Injection via Merge Driver Path | High Risk 8.0 | 4 months ago | 22 days ago |
|
|
Dulwich has an arbitrary file write via NTFS-hostile tree entries on Windows | High Risk 8.8 | 4 months ago | 22 days ago |
|
|
Dulwich doesn't sanitize commit subjects in `porcelain.format_patch` | Low Risk 3.3 | 3 months ago | 2 months ago |
|
|
Dulwich has unbounded memory allocation in receive-pack from crafted thin packs | Medium Risk 5.7 | 3 months ago | 2 months ago |
|
|
Dulwich's submodule path traversal in porcelain.submodule_update / porcelain.clone(recurse_submodules=True) yields RCE via attacker-dropped .git/hooks payload | High Risk 7.5 | 3 months ago | 2 months ago |
|
|
Dulwich doesn't sanitize commit subjects in `porcelain.format_patch` | Low Risk 3.3 | 2 months ago | 2 months ago |
|
|
Dulwich has an arbitrary file write via NTFS-hostile tree entries on Windows | High Risk 8.8 | 2 months ago | 2 months ago |
|
|
Dulwich Vulnerable to Command Injection via Merge Driver Path | Unknown | 2 months ago | 2 months ago |
|
|
Dulwich's submodule path traversal in porcelain.submodule_update / porcelain.clone(recurse_submodules=True) yields RCE via attacker-dropped .git/hooks payload | High Risk 7.5 | 2 months ago | 2 months ago |
|
|
Dulwich has unbounded memory allocation in receive-pack from crafted thin packs | Medium Risk 5.7 | 2 months ago | 2 months ago |
|
|
No summary available | Unknown | 11 years ago | 3 months ago |
|
|
No summary available | Unknown | 8 years ago | 3 months ago |
|
|
No summary available | Unknown | 11 years ago | 3 months ago |
|
|
Dulwich Arbitrary code execution via commit with directory path starting with .git | Critical 9.8 | 4 years ago | 4 months ago |
|
|
Dulwich Buffer Overflow when handling pack files | Critical 9.8 | 4 years ago | 1 year ago |
|
|
Dulwich RCE Vulnerability | Critical 9.8 | 4 years ago | 1 year ago |
Page 1