pkg:Go/github.com/go-git/go-git/v5
共 18 筆 CVECRITICAL4HIGH4MEDIUM6LOW2
✅ 檢查你的版本
所有已知漏洞
- from 0, < 5.13.0
- from 0, < 5.13.0
- CRITICAL9.8CVE-2023-49569Path traversal and RCE in github.com/go-git/go-git/v5 and gopkg.in/src-d/go-git.v4>= 5.0.0, < 5.11.0
- CRITICAL9.8CVE-2023-49569Path traversal and RCE in github.com/go-git/go-git/v5 and gopkg.in/src-d/go-git.v4>= 5.0.0, < 5.11.0
- HIGH7.5CVE-2025-21614Clients vulnerable to DoS via maliciously crafted Git server replies in github.com/go-git/go-gitfrom 0, < 5.13.0
- HIGH7.5CVE-2025-21614Clients vulnerable to DoS via maliciously crafted Git server replies in github.com/go-git/go-gitfrom 0, < 5.13.0
- >= 5.0.0, < 5.11.0
- from 0, < 5.11.0
- from 0, < 5.19.1
- MEDIUM5.0CVE-2026-34165Maliciously crafted idx file can cause asymmetric memory consumption in github.com/go-git/go-git>= 5.0.0, < 5.17.1
- MEDIUM5.0CVE-2026-34165Maliciously crafted idx file can cause asymmetric memory consumption in github.com/go-git/go-git>= 5.0.0, < 5.17.1
- from 0, < 5.18.0
- MEDIUM4.3CVE-2026-25934Improper verification of data integrity values for .idx and .pack files in github.com/go-git/go-gitfrom 0, < 5.16.5
- MEDIUM4.3CVE-2026-25934Improper verification of data integrity values for .idx and .pack files in github.com/go-git/go-gitfrom 0, < 5.16.5
- LOW2.8CVE-2026-33762Missing validation decoding Index v4 files leads to panic in github.com/go-git/go-gitfrom 0, < 5.17.1
- LOW2.8CVE-2026-33762Missing validation decoding Index v4 files leads to panic in github.com/go-git/go-gitfrom 0, < 5.17.1
- from 0, < 5.19.1
- —CVE-2026-45022go-git's improper parsing of specially crafted objects may lead to inconsistent interpretation compared to upstream Gitfrom 0, < 5.19.0