VYPR

uniget CLI

by Uniget

CVEs (2)

  • CVE-2026-55062Aug 17, 2026
    risk 0.00cvss epss

    ### Summary Path Traversal vulnerability in hook filename handling allows attackers to access and manipulate arbitrary files outside the hooks directory via directory escape sequences like [passwd](vscode-file://vscode-app/app/extra/vscode/resources/app/out/vs/code/electron-brows…

  • CVE-2026-55061Aug 17, 2026
    risk 0.00cvss epss

    ### Summary The uniget CLI has a command injection vulnerability in [hooks.go](vscode-file://vscode-app/app/extra/vscode/resources/app/out/vs/code/electron-browser/workbench/workbench.html) line 199 where [strings.Split(editor, " ")](vscode-file://vscode-app/app/extra/vscode/reso…