Skip to content

GitPython: Environment-variable exfiltration via Repo.create_remote() / Remote.add() URL (incomplete fix of GHSA-rwj8-pgh3-r573)

High severity GitHub Reviewed Published Jul 23, 2026 in gitpython-developers/GitPython • Updated Jul 24, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts