{"api_version":"v1","generated_at":"2026-10-07T20:00:00+00:00","product":{"cve_count":11,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-git-for-windows-git-fc52948964e4","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/git","name":"git","next_cursor":null,"observations":[{"affected":"git: < 2.55.0.windows.4","affected_versions_present":true,"cve_id":"CVE-2026-62960","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-62960","fixed":"2.55.0.windows.4.","last_modified":"2026-08-26T17:38:14.501Z","patch_url":"https://github.com/git-for-windows/git/security/advisories/GHSA-xrpg-8j9v-v282","primary_source":"","published":"2026-08-21T20:05:45.099Z"},{"affected":"< 2.53.0.windows.3","affected_versions_present":true,"cve_id":"CVE-2026-32631","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32631","fixed":"2.53.0.windows.3.","last_modified":"2026-04-15T18:44:04.155Z","patch_url":"https://github.com/git-for-windows/git/security/advisories/GHSA-9j5h-h4m7-85hx","primary_source":"","published":"2026-04-15T17:26:44.154Z"},{"affected":"< 2.53.0(2)","affected_versions_present":true,"cve_id":"CVE-2025-66413","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-66413","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-11T14:33:36.115Z","patch_url":"","primary_source":"","published":"2026-03-10T20:34:32.769Z"},{"affected":"< 2.40.1","affected_versions_present":true,"cve_id":"CVE-2023-29012","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29012","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-03T18:06:37.041Z","patch_url":"","primary_source":"","published":"2023-04-25T20:44:05.329Z"},{"affected":"< 2.40.1","affected_versions_present":true,"cve_id":"CVE-2023-29011","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29011","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-03T18:07:25.939Z","patch_url":"","primary_source":"","published":"2023-04-25T20:40:30.247Z"},{"affected":"< 2.40.1","affected_versions_present":true,"cve_id":"CVE-2023-25815","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-25815","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-04T16:09:59.699Z","patch_url":"https://github.com/msys2/MINGW-packages/pull/10461","primary_source":"","published":"2023-04-25T19:51:38.433Z"},{"affected":"< 2.39.2","affected_versions_present":true,"cve_id":"CVE-2023-22743","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-22743","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-10T21:11:18.086Z","patch_url":"https://learn.microsoft.com/en-us/windows/win32/controls/cookbook-overview?redirectedfrom=MSDN#using-comctl32dll-version-6-in-an-application-that-uses-only-standard-extensions","primary_source":"","published":"2023-02-14T20:39:30.094Z"},{"affected":"< 2.39.2","affected_versions_present":true,"cve_id":"CVE-2023-23618","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-23618","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-10T21:11:24.730Z","patch_url":"https://github.com/git-for-windows/git/commit/49a8ec9dac3cec6602f05fed1b3f80a549c8c05c","primary_source":"","published":"2023-02-14T20:38:04.921Z"},{"affected":"< 2.39.1","affected_versions_present":true,"cve_id":"CVE-2022-41953","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-41953","fixed":"2.39.1.","last_modified":"2025-03-10T21:22:28.600Z","patch_url":"https://github.com/git-for-windows/git/security/advisories/GHSA-v4px-mx59-w99c","primary_source":"","published":"2023-01-17T21:03:14.721Z"},{"affected":"< 2.37.1","affected_versions_present":true,"cve_id":"CVE-2022-31012","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31012","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-23T18:02:50.999Z","patch_url":"https://github.com/git-for-windows/git/security/advisories/GHSA-gjrj-fxvp-hjj2","primary_source":"","published":"2022-07-12T20:35:15.000Z"},{"affected":"< 2.35.2","affected_versions_present":true,"cve_id":"CVE-2022-24765","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24765","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-16T17:47:44.510Z","patch_url":"https://github.com/git-for-windows/git/security/advisories/GHSA-vw2c-22j4-2fh2","primary_source":"","published":"2022-04-12T00:00:00.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"git-for-windows"}}
