TROYANOSYVIRUS
Back to CVEs

CVE-2023-40267

CRITICAL
9.8

Description

GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from. NOTE: this issue exists because of an incomplete fix for CVE-2022-24439.

This product uses data from the NVD API but is not endorsed or certified by the NVD.