Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    1
    Critical Level Threats
    3
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-82669

    klaussilveira GitList XML Parsing CommandLine.php SimpleXMLElement denial of service

    Last Modified: Sep 02, 2026
    Published: Aug 31, 2026

    CVE-2026-82668

    klaussilveira GitList Git Command Line CommandLine.php getDefaultBranch os command injection

    Last Modified: Aug 31, 2026
    Published: Aug 31, 2026

    CVE-2018-1000533

    klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` function that can result in Execute any code as PHP user. This attack appear to be exploitable via Send POST request using search form. This vulnerability appears to have been fixed in 0.7 after commit 87b8c26b023c3fc37f0796b14bb13710f397b322.

    Last Modified: Nov 21, 2024
    Published: Jun 26, 2018

    CVE-2014-4511

    Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.

    Last Modified: Apr 12, 2025
    Published: Jul 22, 2014

    CVE-2013-7392

    Gitlist allows remote attackers to execute arbitrary commands via shell metacharacters in a file name to Source/.

    Last Modified: Apr 12, 2025
    Published: Jul 22, 2014
    Items Per Page