Known vulnerabilities in GitPython 3.1.56

Software: GitPython
Version: 3.1.56
Software CPE: cpe:2.3:a:gitpython-developers:gitpython:*:*:*:*:*:*:*:*
Total vulnerabilities: 10
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting GitPython version 3.1.56 GitPython 3.1.56 is affected by 10 vulnerabilities: 1 high, 4 medium, 5 low Critical High Medium Low

Vulnerabilities (10)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140975 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 High
No
No
3.1.58 05.08.2026 SB2026080540
#VU140974 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CWE-74 Medium
No
No
3.1.58 05.08.2026 SB2026080540
#VU140973 - Argument Injection or Modification
CWE-88 Medium
No
No
3.1.58 05.08.2026 SB2026080540
#VU140972 - Argument Injection or Modification
CWE-88 Medium
No
No
3.1.58 05.08.2026 SB2026080540
#VU140971 - Argument Injection or Modification
CWE-88 Low
No
No
3.1.58 05.08.2026 SB2026080540
#VU140970 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
3.1.58 05.08.2026 SB2026080540
#VU140587 - External Control of File Name or Path
CWE-73 Medium
No
No
3.1.57 31.07.2026 SB2026073119
#VU140588 - External Control of File Name or Path
CWE-73 Low
No
No
3.1.57 31.07.2026 SB2026073119
#VU140585 - External Control of File Name or Path
CWE-73 Low
No
No
3.1.57 31.07.2026 SB2026073119
#VU140586 - Server-Side Request Forgery (SSRF)
CWE-918 Low
No
No
3.1.57 31.07.2026 SB2026073119