VULNRABLE / Vulnerability / GHSA-94p4-4cq8-9g67
GHSA-94p4-4cq8-9g67
HIGH LOW GitPython GHSA
Exploit verdict: No active-exploit signal
CVSS Score
8
Severity
HIGH
EPSS
—
Source
GHSA
Summary
GitPython: Environment-variable exfiltration via Repo.create_remote() / Remote.add() URL (incomplete fix of GHSA-rwj8-pgh3-r573)
What this means
GHSA-94p4-4cq8-9g67 is a high-severity vulnerability affecting GitPython, rated CVSS 8. Published July 25, 2026.
View full advisory at GHSA →