An open API service providing security vulnerability metadata for many open source software ecosystems.

go

gopkg.in/src-d/go-git.v4

go · A highly extensible git implementation in pure Go. go-git aims to reach the completeness of libgit2 or jgit, nowadays covers the majority of the plumbing read operations and some of the main write operations, but lacks the main porcelain operations such as merges. It is highly extensible, we have been following the open/close principle in its design to facilitate extensions, mainly focusing the efforts on the persistence of the objects. · Repository · Package

Security Advisories for gopkg.in/src-d/go-git.v4 in go

High
9 months ago

go-git clients vulnerable to DoS via maliciously crafted Git server replies GSA_kwCzR0hTQS1yOXB4LW05NTktY3hmNM4ABC-l

go github.com/go-git/go-git, github.com/go-git/go-git/v5, gopkg.in/src-d/go-git.v4
Critical
9 months ago

go-git has an Argument Injection via the URL field GSA_kwCzR0hTQS12NzI1LTk1NDYtN3E3bc4ABC-k

go github.com/go-git/go-git/v5, gopkg.in/src-d/go-git.v4
High
almost 2 years ago

Maliciously crafted Git server replies can cause DoS on go-git clients GSA_kwCzR0hTQS1tdzk5LTljaGMteHc3cs4AA4Cr

go gopkg.in/src-d/go-git.v4, github.com/go-git/go-git/v5

Filter by Severity