Gitit is a lightweight wiki engine built on Haskell that supports Git-backed page storage and collaborative editing. Its documented vulnerability exposure centers on improper access controls, allowing files or directories to become inadvertently accessible to external parties through configuration or deployment oversights. Current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gitit Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44685CRITICAL Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verification process, it attempts to run the reflog command follow | Dec 7, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-38711HIGH In gitit before 0.15.0.0, the Export feature can be exploited to leak information from files. | Aug 16, 2021 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gitit Project.
Media articles that mention a CVE ID that affects a product developed by Gitit Project — matched by CVE ID, not by vendor name.