PatchSiren

git-for-windows CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH git-for-windows CVE published 2026-08-21

CVE-2026-62960

CVE-2026-62960 debrief: Git for Windows vulnerability allows malicious remote Git server to expose NTLM authentication material. Affected product deployments should be reviewed for exposure, and owners should assess and update to version 2.55.0.windows.4 or later. This high-severity vulnerability enables an attacker to initiate an outbound SMB connection, potentially exposing NTLM authentication material. [truncated]