Vendor
high
advisory
Path Traversal and Trust Inheritance Vulnerability in gitoxide
1 TTP 1 CVEA path traversal and trust inheritance vulnerability in the gitoxide Rust crates allows attackers to access arbitrary git configurations by crafting malicious .gitmodules files.
gix +1
vulnerability
supply-chain
gitoxide
rust
1t
1c
high
advisory
Credential Disclosure Vulnerability in gitoxide gix-url and gix-transport Crates
1 CVEAn improper URL parsing flaw in the gitoxide gix-url crate enables credential theft by causing the gix-transport identity guard to transmit HTTP Basic Authorization headers to unauthorized hosts via crafted redirects.
gix-url +1
1c
high
advisory
Path Traversal Vulnerability in gitoxide
2 TTPs 1 CVEGitoxide versions prior to 0.52.1 contain a path traversal vulnerability via symlink following that allows attackers to inject arbitrary file contents into submodule configuration metadata.
gitoxide +1
2t
1c