Simple-git Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 7
    Known Exploited: 0
    2
    Critical Level Threats
    5
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-6951

    simple-git: simple-git: Remote Code Execution due to incomplete fix bypass

    Last Modified: Jun 29, 2026
    Published: Apr 25, 2026

    CVE-2026-28291

    simple-git has Command Execution via Option-Parsing Bypass

    Last Modified: May 13, 2026
    Published: Apr 13, 2026

    CVE-2026-28292

    simple-git has blockUnsafeOperationsPlugin bypass via case-insensitive protocol.allow config key that enables RCE

    Last Modified: Apr 15, 2026
    Published: Mar 10, 2026

    CVE-2022-25860

    Versions of the package simple-git before 3.16.0 are vulnerable to Remote Code Execution (RCE) via the clone(), pull(), push() and listRemote() methods, due to improper input sanitization. This vulnerability exists due to an incomplete fix of [CVE-2022-25912](https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-3112221).

    Last Modified: Apr 01, 2025
    Published: Jan 24, 2023

    CVE-2022-25912

    Remote Code Execution (RCE)

    Last Modified: Apr 22, 2025
    Published: Dec 06, 2022
    Items Per Page
    Simple-Git_Project Vulnerabilities & Security CVEs | CVE-DB