Threats Tagged 'brew-snowflake-cli-cve-2026-76220'
View all threats tagged with 'brew-snowflake-cli-cve-2026-76220'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'brew-snowflake-cli-cve-2026-76220'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-76220 is a command injection vulnerability in GitPython affecting versions prior to 3.1.58. It allows bypassing the unsafe options guard by combining a single-character keyword argument with split_single_char_options set to false, leading to arbitrary OS command execution via the git --upload-pack option. This flaw is an incomplete fix of a previous vulnerability and impacts all guarded methods forwarding kwargs with this configuration. Join the discussion | CVE Database V5 | 08/20/2026, 09:45:22 UTC Added: 08/19/2026, 14:23:54 UTC |
A vulnerability in GitPython used by snowflake-cli allows bypassing the unsafe git option guard via a crafted short-option token with split_single_char_options set to false. This enables arbitrary OS command execution through git's --upload-pack option when forwarding user-controlled kwargs to guarded methods like clone or fetch. The issue affects GitPython versions from 3.4.1 up to but not including 3.25.0. A patch is available to fix this bypass. Join the discussion | GCVE Database | 08/20/2026, 09:40:01 UTC Added: 09/29/2026, 04:46:36 UTC |
Showing 1 to 2 of 2 results