PatchSiren

klaussilveira CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM klaussilveira CVE published 2026-08-31

CVE-2026-82668

A security vulnerability has been detected in klaussilveira GitList 2.0.0, affecting the function getDefaultBranch of the file src/SCM/System/Git/CommandLine.php, allowing for os command injection. This vulnerability can be exploited remotely, and its CVSS score is 5.5, classified as MEDIUM. The attack vector involves manipulation of the Git command line, leading to potential system compromise. Users shou [truncated]