CVE-2025-12556
HIGHDescription
An argument injection vulnerability exists in the affected product that could allow an attacker to execute arbitrary code within the context of the host machine.
Is your site exposed to CVE-2025-12556?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
References
Other References
Frequently Asked Questions
What is CVE-2025-12556? +
How severe is CVE-2025-12556? +
How do I check if I'm vulnerable to CVE-2025-12556? +
Related Vulnerabilities
Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, src/core/git/gitCommand.ts execGitShallowClone passes the --remote-branch value directly …
A hidden console command is vulnerable to command injection flaw when control characters are passed to its second argument. A …
Atheos is a self-hosted browser-based cloud integrated development environment. Prior to version 6.0.4, improper use of `escapeshellcmd()` in `/components/codegit/traits/execute.php` allows …
File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior …
Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations …
Atril Document Viewer is the default document reader of the MATE desktop environment for Linux. A single-click remote code execution …