Plattformen: SUSE Linux Enterprise High Performance Computing 15 SP4, SUSE Linux Enterprise Server 15 SP4, SUSE Linux Enterprise Server for SAP Applications 15 SP4, SUSE Linux Enterprise Server for ...
GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives like core.hooksPath. Attackers can ...
GitPython versions before 3.1.58 fail to validate options passed to git rm and git checkout commands in IndexFile.remove() and Head.checkout(). Attackers can supply --pathspec-from-file and --pathspec ...
This score calculates overall vulnerability severity from 0 to 10 and is based on the Common Vulnerability Scoring System (CVSS). Attack Vector: This metric reflects the context by which vulnerability ...
This score calculates overall vulnerability severity from 0 to 10 and is based on the Common Vulnerability Scoring System (CVSS). Attack Vector: This metric reflects the context by which vulnerability ...
GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject ...
GitPython is a python library used to interact with Git repositories. Prior to version 3.1.49, GitConfigParser.set_value() passes values to Python's configparser without validating for newlines.
「リポジトリを指定するだけで、コードの概要要約・改善提案・ドキュメント生成・テスト雛形まで一気に作ってくれるアプリが欲しい…」 そんな願いを叶えるのが、今回解説する ...
# python311-GitPython-3.1.44-1.1 on GA media Announcement ID: openSUSE-SU-2025:14858-1 Rating: moderate Cross-References: * CVE-2022-24439 CVSS scores: * CVE-2022 ...
在前面三篇介绍 fire的文章中,我们全面了解了 fire强大而不失简洁的能力。按照惯例,我们要像使用 argparse、docopt和 click一样使用 fire来实现 git 命令。 本文的关注点并不在 git的各种命令是如何 ...
在前面五篇介绍 click的文章中,我们全面了解了 click的强大能力。按照惯例,我们要像使用 argparse和 docopt一样使用 click来实现 git 命令。 本文的关注点并不在 git的各种命令是如何实现的,而是 ...