HIGHPyPI

GitPython: Arbitrary file overwrite via git diff --output argument injection in Diffable.diff (key- and value-controlled)

GitPython: Arbitrary file overwrite via git diff --output argument injection in Diffable.diff (key- and value-controlled)

CVE-2026-73624Published 4 weeks agoUpdated 1 week agoSource: OSV

Affected packages

  • gitpythonbefore 3.1.54

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

GitPython: Arbitrary file overwrite via git diff --output argument injection in Diffable.diff (key- and value-controlled) | HackTribune