Critical severity9.8NVD Advisory· Published Dec 7, 2021· Updated Jun 17, 2026
CVE-2021-44685
CVE-2021-44685
Description
Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verification process, it attempts to run the reflog command followed by the current branch name (which is not sanitized for execution).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
git-it-electronnpm | <= 4.3.0 | — |
Affected products
3- Git-it/Git-itdescription
Patches
Vulnerability mechanics
References
5- github.com/dwisiswant0/advisory/issues/3nvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-wjqc-j537-j9gjghsaADVISORY
- github.com/jlord/git-it-electron/releasesnvdRelease NotesThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2021-44685ghsaADVISORY
- advisory.dw1.io/3ghsaWEB
News mentions
0No linked articles in our index yet.