Known vulnerabilities in git (Alpine package)

Software CPE: cpe:2.3:o:alpine:git_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 22
Public exploits: 5
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting git (Alpine package) git (Alpine package) is affected by 22 known vulnerabilities: 13 high, 4 medium, 5 low Critical High Medium Low

Vulnerabilities (22)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU27258 - Insufficiently Protected Credentials
CVE-2020-5260
CWE-522 Medium
Available
No
2.18.3-r0, 2.20.3-r0 23.04.2020 SB2020042343
SB2020042344
SB2020042345
and 27 more
#VU27257 - Insufficiently Protected Credentials
CVE-2020-11008
CWE-522 Low
No
No
2.18.4-r0, 2.20.4-r0 23.04.2020 SB2020042343
SB2020042344
SB2020042345
and 18 more
#VU23556 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-19604
CWE-78 High
No
No
2.22.2-r0 12.12.2019 SB2019121207
SB2019121209
SB2019121215
and 8 more
#VU23555 - Incorrect Default Permissions
CVE-2019-1353
CWE-276 Low
No
No
2.15.4-r0, 2.18.2-r0 12.12.2019 SB2019121207
SB2019121209
SB2019121215
and 10 more
#VU23554 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2019-1348
CWE-22 Medium
No
No
2.15.4-r0, 2.18.2-r0 12.12.2019 SB2019121207
SB2019121209
SB2019121215
and 15 more
#VU23500 - Absolute Path Traversal
CVE-2019-1351
CWE-36 Medium
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121209
and 10 more
#VU23494 - Improper input validation
CVE-2019-1349
CWE-20 High
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121207
and 16 more
#VU23493 - Improper input validation
CVE-2019-1350
CWE-20 High
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121209
and 11 more
#VU23492 - Improper input validation
CVE-2019-1352
CWE-20 High
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121207
and 18 more
#VU23491 - Improper input validation
CVE-2019-1354
CWE-20 High
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121209
and 10 more
#VU23488 - Improper input validation
CVE-2019-1387
CWE-20 High
No
No
2.15.4-r0, 2.18.2-r0 10.12.2019 SB2019121019
SB2019121201
SB2019121207
and 19 more
#VU16148 - Command injection
CVE-2018-19486
CWE-77 Low
No
No
2.13.7-r2 28.11.2018 SB2018112807
SB2018122108
SB2018122305
and 4 more
#VU15167 - Command injection
CVE-2018-17456
CWE-77 High
Available
No
2.11.3-r2 08.10.2018 SB2018100802
SB2018100804
SB2018100904
and 20 more
#VU13048 - Improper input validation
CVE-2018-11233
CWE-20 Low
No
No
2.11.3-r1 30.05.2018 SB2018053005
SB2018053007
SB2018060405
and 10 more
#VU13047 - Improper input validation
CVE-2018-11235
CWE-20 High
Available
No
2.11.3-r1 30.05.2018 SB2018053005
SB2018053006
SB2018053007
and 18 more
#VU7889 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2017-1000117
CWE-78 High
Available
No
2.8.6-r0 15.08.2017 SB2017081104
SB2017081201
SB2017081714
and 14 more
#VU6933 - Permissions, Privileges, and Access Controls
CVE-2017-8386
CWE-264 Low
No
No
2.6.7-r0 06.06.2017 SB2017060608
SB2017051507
SB2017051020
and 8 more
#VU32315 - Improper input validation
CVE-2015-7545
CWE-20 High
No
No
2.4.1-r1 13.04.2016 SB2016041315
SB2016010702
SB2016010703
and 7 more
#VU32318 - Heap-based Buffer Overflow
CVE-2016-2324
CWE-122 High
No
No
2.4.11-r0 08.04.2016 SB2016040807
SB2016031701
SB2016031702
and 10 more
#VU32317 - Heap-based Buffer Overflow
CVE-2016-2315
CWE-122 High
No
No
2.4.11-r0 08.04.2016 SB2016040806
SB2016031701
SB2016031702
and 10 more


Showing elements 1 - 20 out of 22