HashiCorp’s go-getter library is vulnerable to argument injection when executing Git to discover remote branches. This vulnerability does not affect the go-getter/v2 branch and package.
2024-04-17T20:15:08.383
2025-12-11T20:03:00.883
Analyzed
CVSSv3.1: 9.8 (CRITICAL)