Vulnerabilidades em GitoxideLabs

16 resultados
Análise Vexday

GitoxideLabs apresenta um panorama de risco baixo com apenas 5 CVEs registradas e nenhuma sob exploração ativa conhecida. A fraqueza dominante (CWE-135) não se manifesta em severidade crítica, embora uma vulnerabilidade tenha sido publicada nos últimos 90 dias, sinalizando atividade recente que merece monitoramento.

CVE-2026-82253HIGHgitoxide before 0.82.0 Path Traversal via Submodule Name Validation BypassEPSS 0.7%CVE-2026-82251HIGHgitoxide before 0.52.1 Path Traversal via Submodule NameEPSS 0.5%CVE-2026-82252HIGHgitoxide before 0.52.1 Repository Boundary Violation via symlinked .gitmodulesEPSS 0.5%CVE-2026-82254HIGHgitoxide before 0.69.0 Denial of Service via gix-packEPSS 0.5%CVE-2026-82250HIGHgitoxide gix-packetline before 0.21.5 Denial of ServiceEPSS 0.4%CVE-2026-82247HIGHgitoxide before 0.37.1 HTTP Basic credential leak via URL parsingEPSS 0.4%CVE-2026-82255HIGHgitoxide 0.25.4 HTTP Credential Leak via RedirectEPSS 0.4%CVE-2025-22620MEDIUMgix-worktree-state nonexclusive checkout sets executable files world-writableEPSS 0.4%CVE-2026-82248MEDIUMgitoxide before 0.33.0 Path Traversal via symlink followingEPSS 0.3%CVE-2026-82249LOWgitoxide before 0.38.2 Credential Helper Protocol Field InjectionEPSS 0.3%CVE-2026-91986MEDIUMgitoxide gix-transport before 0.59.2 CR/LF/NUL InjectionEPSS 0.3%CVE-2025-31130MEDIUMgitoxide does not detect SHA-1 collision attacksEPSS 0.3%CVE-2026-0810HIGHGix-date: gix-date: undefined behavior due to invalid string generationEPSS 0.2%CVE-2026-44471HIGHgitoxide: Symlink prefix-reuse allows worktree escape during checkoutEPSS 0.2%CVE-2025-24890MEDIUMgix-sec safe.directory protections absent for elevated administratorsEPSS 0.2%CVE-2023-53158MEDIUMThe gix-transport crate before 0.36.1 for Rust allows command execution via the "gix clone 'ssh://-oProxyCommand=open$IFS" substring. NOTE: EPSS 0.2%