git-bug before 0.7.2 has an Uncontrolled Search Path Element. It will execute git.bat from the current directory in certain PATH situations (most often seen on Windows).
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| github.com/MichaelMure/git-bug(Go) | 0 | 0.7.2 | N/A |
CVSS Metrics