CVE-2018-3785: Git-Dummy-Commit Project Git-Dummy-Commit

Critical severity, CVSS 9.8. EPSS: 4% chance of exploitation in the next 30 days.

A command injection in git-dummy-commit v1.3.0 allows os level commands to be executed due to an unescaped parameter.

Affected products

Published 2018-08-17. Last modified 2026-06-17.