All 38 CVE vulnerabilities found in Git, with AI-generated Chinese analysis, references, and POCs.
This page is a vulnerability aggregation resource for Git, maintained by the Linux Foundation, focusing on Common Weakness Enumeration (CWE) types and associated tags. It compiles a comprehensive list of security vulnerabilities discovered in the Git version control system, covering findings reported from January 2005 through to the present day. By providing a centralized view of these issues, the page allows security professionals and developers to track Git’s advisory history, understand the evolution of specific weakness classes within the codebase, and look up the complete vulnerability history of the product. The collection includes details on the nature of each flaw, its severity, and the resolution status, offering insights into how the project addresses security challenges over time. This resource is intended to aid in risk assessment, patch management, and compliance verification by presenting a clear, chronological record of known defects. It does not cover vulnerabilities in third-party tools that interact with Git, but rather focuses exclusively on the core Git software itself. Users can navigate the entries to analyze trends, such as common attack vectors or frequently exploited components, thereby facilitating informed decisions regarding system hardening and upgrade strategies. The data is organized to ensure easy access for both immediate troubleshooting and long-term security analysis.
Vendor: Microsoft Corporation
All 38 known CVE vulnerabilities affecting Git with full Chinese analysis, references, and POCs where available.