CVE-2015-8969

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
03/11/2016
Last modified:
12/04/2025

Description

git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious commands by modifying the strings that are passed as arguments to "cd " and "git clone " commands in the library.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:squareup:git-fastclone:*:*:*:*:*:*:*:* 1.0.5 (excluding)