VYPR

Githacker

by Wangyihang

CVEs (1)

  • CVE-2026-50024Sep 9, 2026
    risk 0.00cvss epss

    ## Summary GitHacker through 1.1.7 did not validate path segments parsed from attacker-controlled `.git/HEAD` before joining them onto its output directory. A malicious server could coerce GitHacker into reading arbitrary local files. Contents do not stream back wholesale, but…