Published
Last updated
NVD
CGA ID
9.8
CVSS V3
HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches.
This vulnerability does not affect the go-getter/v2 branch and package.