CVE-2013-7203: Gitolite

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

gitolite before commit fa06a34 might allow local users to read arbitrary files in repositories via vectors related to the user umask when running gitolite setup.

Affected products

  • Gitolite Gitolite: up to and including 3.5.3

Published 2018-09-21. Last modified 2026-06-17.