Vulnerabilities

Last updated 3 hours ago
Filters
Severity
Critical Severity
CVSS Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
High Severity
CVSS Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
Medium Severity
CVSS Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
Low Severity
CVSS Score Range: < 4.0
Low severity vulnerabilities (CVSS < 4.0). Hygiene issues that can accumulate but pose lower immediate risk.
Unknown Severity
CVSS Score Range: No score
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
Package Summary Severity Published Modified
simple-git simple-git: unsafe-operations plugin bypass via git long-option abbreviation (--receive-p/--exe) -> command execution (residual of CVE-2026-28291) High Risk 8.1 8 hours ago 8 hours ago
simple-git simple-git allows command execution through unblocked Git configuration includes High Risk 8.1 8 hours ago 8 hours ago
@simple-git/argv-parser simple-git: `VISUAL` editor environment variable is omitted from unsafe editor detection Critical 9.5 8 hours ago 8 hours ago
simple-git simple-git unsafe-operation guard does not block trailer command configuration Critical 9.5 8 hours ago 8 hours ago
simple-git simple-git is vulnerable to Remote Code Execution Critical 9.8 5 months ago 26 days ago
simple-git simple-git Affected by Command Execution via Option-Parsing Bypass High Risk 8.1 5 months ago 26 days ago
simple-git simple-git has blockUnsafeOperationsPlugin bypass via case-insensitive protocol.allow config key enables RCE Critical 9.8 6 months ago 26 days ago
simple-git Remote code execution in simple-git Critical 9.8 3 years ago 1 year ago
simple-git Command injection in simple-git High Risk 8.1 4 years ago 1 year ago
simple-git Command injection in simple-git High Risk 8.1 4 years ago 1 year ago
simple-git simple-git vulnerable to Remote Code Execution when enabling the ext transport protocol High Risk 8.1 3 years ago 2 years ago