<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>gitpython-developers CVEs · CVE Brief</title>
    <link>https://cvebrief.com/archive/cves/vendor/gitpython-developers/</link>
    <atom:link href="https://cvebrief.com/feeds/vendor/gitpython-developers.xml" rel="self" type="application/rss+xml"/>
    <description>High and critical gitpython-developers vulnerabilities covered by CVE Brief, with independent analyst commentary.</description>
    <language>en-us</language>
    <lastBuildDate>Thu, 10 Sep 2026 12:00:00 GMT</lastBuildDate>
    <item>
      <title>CVE-2026-87817 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-87817/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-87817</guid>
      <pubDate>Thu, 10 Sep 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3.1.60 fails to properly validate the git directory location, allowing attackers to impersonate the git directory using tracked files like gitdir, commondir, and HEAD. Fix documented: 3.1.60 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-78675 · CVSS 8.4 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-78675/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-78675</guid>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.59 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-78676 · CVSS 9.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-78676/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-78676</guid>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3.1.59 is vulnerable to argument injection where crafted multi-line git-config values allow attackers to inject malicious directives, leading to arbitrary code execution. Fix documented: 3.1.59 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-78677 · CVSS 7.5 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-78677/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-78677</guid>
      <pubDate>Tue, 25 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.59 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-76220 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-76220/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-76220</guid>
      <pubDate>Thu, 20 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.58 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-76221 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-76221/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-76221</guid>
      <pubDate>Thu, 20 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.58 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-73625 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-73625/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-73625</guid>
      <pubDate>Fri, 14 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython versions before 3 Fix documented: 3.1.54 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-67322 · CVSS 7.5 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-67322/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-67322</guid>
      <pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.52 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-67323 · CVSS 8.4 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-67323/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-67323</guid>
      <pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.51 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-67324 · CVSS 9.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-67324/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-67324</guid>
      <pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython fails to properly filter joined short-option arguments, allowing attackers to bypass security gates and execute arbitrary commands during repository cloning. Fix documented: 3.1.51 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-67325 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-67325/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-67325</guid>
      <pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.51 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-67326 · CVSS 7.0 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-67326/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-67326</guid>
      <pubDate>Sun, 02 Aug 2026 12:00:00 GMT</pubDate>
      <description>GitPython before 3 Fix documented: 3.1.50 (CVE record). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-44244 · CVSS 7.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-44244/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-44244</guid>
      <pubDate>Sat, 09 May 2026 12:00:00 GMT</pubDate>
      <description>GitPython is a python library used to interact with Git repositories Fix documented: 3.1.49 (OSV.dev). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-42215 · CVSS 8.8 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-42215/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-42215</guid>
      <pubDate>Fri, 08 May 2026 12:00:00 GMT</pubDate>
      <description>GitPython is a python library used to interact with Git repositories Fix documented: 3.1.47 (OSV.dev). Independent analyst report on CVE Brief.</description>
    </item>
    <item>
      <title>CVE-2026-42284 · CVSS 8.1 · GitPython</title>
      <link>https://cvebrief.com/cve/cve-2026-42284/</link>
      <guid isPermaLink="false">cvebrief-gitpython-developers-CVE-2026-42284</guid>
      <pubDate>Fri, 08 May 2026 12:00:00 GMT</pubDate>
      <description>GitPython is a python library used to interact with Git repositories Fix documented: 3.1.47 (OSV.dev). Independent analyst report on CVE Brief.</description>
    </item>
  </channel>
</rss>
