Product
git-mcp-server version 2.15.1 is vulnerable to argument injection due to insufficient input validation in the ref and object parameters of its git tools, allowing for arbitrary file writes.