Home
MEDIUM: 4.7 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:NDefault status
unaffected
0.0.0 (2.7.1)
affected
Description
BBOT's git_clone module could be abused to disclose a GitHub API key to an attacker controlled server with a malicious formatted git URL.
Problem types
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
Product status
0.0.0 (2.7.1)
References
blog.blacklanternsecurity.com/...security-advisory-gitdumper