CVE-2025-48384 ScannerCVE-2025-48384 is a critical vulnerability in Git that allows attackers to write arbitrary files during a git clone --recursive operation. This can lead to remote code execution (RCE) via malicious .gitmodules, symlinks, and Git hooks. The vulnerability affects Linux and macOS platforms, while Windows is unaffected.
This repository contains a Python-based scanner, generated using AI, to detect potentially malicious Git repositories exploiting CVE-2025-48384.
Usage
```
git clone https://github.com/EdwardYeIntrix/CVE-2025-48384-Scanner.git
cd CVE-2025-48384-Scanner
python3 cve_2025_48384_auto_print_scanner.py /path/to/repo --remote
```
[4.0K] /data/pocs/8e331cc5db086954752175b33a9e029cdcacb6d7
├── [3.2K] cve_2025_48384_auto_print_scanner.py
└── [ 644] README.md
0 directories, 2 files