/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-6257

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-6257

Severity

8.4

High

CVSS V3

Description

HashiCorp’s go-getter library can be coerced into executing Git update on an existing maliciously modified Git Configuration, potentially leading to arbitrary code execution.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing