Threats Tagged 'cve-2026-71556'
View all threats tagged with 'cve-2026-71556'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-71556'
Click on any threat for detailed analysis and mitigation recommendations
V5: go-git: Worktree operations may follow symlinks (CVE-2026-71556)CVE-2026-71556 0 A symlink traversal vulnerability in go-git before version 5.19.2 and version 6.0.0-alpha.5 allows worktree operations to follow symbolic links, potentially modifying files outside the intended worktree path, including Git metadata files. This occurs because the worktreeFilesystem wrapper did not prevent following existing symlinks in the path, enabling writes to escape the repository boundary. Exploitation requires attacker control over symlinks in the worktree and triggering a write operation through them. The issue has been fixed by rejecting paths where symlinks could cause escape from the worktree. Users of filesystem-backed worktrees should upgrade to a patched version. Join the discussion | GCVE Database | 08/07/2026, 16:38:15 UTC Added: 08/08/2026, 14:54:37 UTC |
Showing 1 to 1 of 1 result