VendorsGit For Windows Projectgit_for_windowsany version
Vulnerabilities

Git For Windows Project Git any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2023-23618
gitk can inadvertently call executables in the worktree
Published 2023-02-14 · Modified
8.6EPSS 0.004
CVE-2022-24767
GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.
Published 2022-04-12 · Modified
7.8EPSS 0.015
CVE-2016-9274
Untrusted search path vulnerability in Git 1.x for Windows allows local users to gain privileges via a Trojan horse git.exe file in the current working directory. NOTE: 2.x is unaffected.
Published 2016-11-11 · Modified
7.8EPSS 0.009
CVE-2023-29011
Git for Windows's config file of `connect.exe` is susceptible to malicious placing
Published 2023-04-25 · Modified
7.8EPSS 0.004
CVE-2023-29012
Git CMD erroneously executes `doskey.exe` in the current directory, if it exists
Published 2023-04-25 · Modified
7.8EPSS 0.004
CVE-2023-22743
Git for Windows' installer is susceptible to DLL side loading attacks
Published 2023-02-14 · Modified
7.3EPSS 0.004
CVE-2023-25815
Git looks for localized messages in the wrong place
Published 2023-04-25 · Modified
3.3EPSS 0.010