Beveiligingsadvies

CVE-2022-25912

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-12-12 01:49:10
Laatst bijgewerkt 2025-04-22 20:15:14
Toegewezen door snyk
CVSS-score 8.1
Status PUBLISHED

Beschrijving

The package simple-git before 3.15.0 are vulnerable to Remote Code Execution (RCE) when enabling the ext transport protocol, which makes it exploitable via clone() method. This vulnerability exists due to an incomplete fix of [CVE-2022-24066](https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-2434306).