Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37633
HistoryOct 20, 2022 - 7:55 p.m.

Information Disclosure

2022-10-2019:55:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20
git
vulnerability
information disclosure
local attacker
symbolic link
restricted component
confidential information
software

0.001 Low

EPSS

Percentile

41.7%

git is vulnerable to information disclosure. A local attacker is able to convinces a victim to clone a repository with a symbolic link pointing at a restricted component on the victim’s machine, which allows the attacker to gain access to confidential information.

References