GO-2023-1911 : gitjacker arbitrary code execution in github.com/liamg/gitjacker
Discover Packages
github.com/liamg/gitjacker
module
Version:
v0.0.3
Opens a new window with list of versions in this module.
Published: Feb 23, 2021
License: Unlicense
Opens a new window with license information.
README
README
¶
gitjacker
Gitjacker downloads git repositories and extracts their contents from sites where the .git directory has been mistakenly uploaded. It will still manage to recover a significant portion of a repository even where directory listings are disabled.
For educational/penetration testing use only.
More information at https://liam-galvin.co.uk/security/2020/09/26/leaking-git-repos-from-misconfigured-sites.html
Installation
curl -s "https://raw.githubusercontent.com/liamg/gitjacker/master/scripts/install.sh" | bash
...or grab a precompiled binary .
You will need to have git installed to use Gitjacker.
Expand ▾
Collapse ▴
Directories
¶
cmd
internal
Click to show internal directories.
Click to hide internal directories.