Vulnerabilities (CVE)

Filtered by vendor Squareup Subscribe
Filtered by product Git-fastclone
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-8969 1 Squareup 1 Git-fastclone 2020-06-10 10.0 HIGH 9.8 CRITICAL
git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious commands by modifying the strings that are passed as arguments to "cd " and "git clone " commands in the library.