VULNRABLE / Vulnerability / GHSA-94p4-4cq8-9g67

GHSA-94p4-4cq8-9g67

HIGH LOW GitPython GHSA

Exploit verdict: No active-exploit signal

CVSS Score
8
Severity
HIGH
EPSS
Source
GHSA

Summary

GitPython: Environment-variable exfiltration via Repo.create_remote() / Remote.add() URL (incomplete fix of GHSA-rwj8-pgh3-r573)

What this means

GHSA-94p4-4cq8-9g67 is a high-severity vulnerability affecting GitPython, rated CVSS 8. Published July 25, 2026.

View full advisory at GHSA →