CVE-2019-11217: Bonobogitserver Bonobo Git Server
Critical severity, CVSS 9.8. EPSS: 3.8% chance of exploitation in the next 30 days.
The GitController in Jakub Chodounsky Bonobo Git Server before 6.5.0 allows execution of arbitrary commands in the context of the web server via a crafted http request.
Affected products
- Bonobogitserver Bonobo Git Server: before 6.5.0 (fixed in 6.5.0)
Published 2019-04-24. Last modified 2026-06-17.