Feed/CVE-2026-15793
CVE-2026-15793HIGHCVSS 7.5

CVE-2026-15793

Published Jul 21, 2026·Updated Jul 30, 2026

NVD Description

BuildKit custom frontends or clients using the raw low-level API can set git.checkoutbundle=true when checking out Git sources. If the Git source is malicious, this could lead to a crafted command invocation on the host.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free