CVE-2026-78677: Gitpython Unsafe Clone Options
Calling `Repo.clone` or `Repo.clone_from` with `allow_unsafe_options=True` disables validation against dangerous git clone options (such as `--config`, `--template`, and `--separate-git-dir`). If arguments or options are derived from untrusted input, this can lead to argument injection, arbitrary file overwrite, or remote code execution.
greprules fetch cve-2026-78677-gitpython-unsafe-clone-options --engine opengrepDescription
Calling `Repo.clone` or `Repo.clone_from` with `allow_unsafe_options=True` disables validation against dangerous git clone options (such as `--config`, `--template`, and `--separate-git-dir`). If arguments or options are derived from untrusted input, this can lead to argument injection, arbitrary file overwrite, or remote code execution.
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.