gitlab.com/uniget-org/cli
Go3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting gitlab.com/uniget-org/clipage 1 of 1
- CVE-2026-45152HIGHCVSS 7.8EG 7.8✓ Fixed in 0.27.12026-05-27
uniget is a universal installer and updater for (container) tools. Prior to 0.27.1, a command injection vulnerability exists in uniget due to unsafe execution of the check field from metadata files using /bin/bash -c. Because the check fie…
- CVE-2026-55061LOWCVSS 1.0EG 1.0✓ Fixed in 0.27.62026-08-17
uniget is a universal installer and updater for (container) tools. Prior to 0.27.6, the hooks edit command in cmd/uniget/hooks.go parses UNIGET_EDITOR or EDITOR with strings.Split(editor, " ") and passes every space-delimited suffix as an …
- CVE-2026-55062HIGHCVSS 8.4EG 8.4✓ Fixed in 0.27.62026-08-17
uniget is a universal installer and updater for (container) tools. Prior to 0.27.6, the hooks edit command in cmd/uniget/hooks.go concatenates an unvalidated hook filename with the selected hooks directory, allowing parent-directory compon…
Check whether gitlab.com/uniget-org/cli is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for gitlab.com/uniget-org/cli CVEs against the assets you own.
Start Free Scan →