VYPR
Critical severity9.8NVD Advisory· Published Nov 3, 2016· Updated May 6, 2026

CVE-2015-8969

CVE-2015-8969

Description

git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious commands by modifying the strings that are passed as arguments to "cd " and "git clone " commands in the library.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
git-fastcloneRubyGems
< 1.0.51.0.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.