CVE Feed

    Dashboard / CVE / CVE-2025-68145

    CVE-2025-68145

    In mcp-server-git versions prior to 2025.12.17, when the server is started with the --repository flag to restrict operations to a specific repository path, it did not validate that repo_path arguments in subsequent tool calls were actually within that configured path. This could allow tool calls to operate on other repositories accessible to the server process. The fix adds path validation that resolves both the configured repository and the requested path (following symlinks) and verifies the requested path is within the allowed repository before executing any git operations. Users are advised to upgrade to 2025.12.17 upon release to remediate this issue.

    Published:Dec 17, 2025
    Last Modified:Apr 14, 2026
    EPS:Dec 17, 2025
    EPSS Score:0.00095
    CVSS Score:9.1

    Affected Products

    Vendor
    Lfprojects
    Product
    Model Context Protocol Servers
    Vendor
    Modelcontextprotocol
    Product
    Servers

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High