2023-08-11 08:00:32 +00:00
{
"id" : "CVE-2023-40267" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2023-08-11T07:15:09.647" ,
2023-08-11 14:00:32 +00:00
"lastModified" : "2023-08-11T12:58:22.393" ,
"vulnStatus" : "Awaiting Analysis" ,
2023-08-11 08:00:32 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from. NOTE: this issue exists because of an incomplete fix for CVE-2022-24439."
}
] ,
"metrics" : { } ,
"references" : [
{
"url" : "https://github.com/gitpython-developers/GitPython/commit/ca965ecc81853bca7675261729143f54e5bf4cdd" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://github.com/gitpython-developers/GitPython/pull/1609" ,
"source" : "cve@mitre.org"
}
]
}