CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2024-3817
Severity
CRITICAL
CVSS
9.8
EPSS
1.33%
Original NVD Description
HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches. This vulnerability does not affect the go-getter/v2 branch and package.
Related CVEs
Other vulnerabilities affecting the same vendor(s)