CVE-2026-45022 | go-git up to 5.18.x/6.0.0-alpha.2 validate before canonicalize (GHSA-389r-gv7p-r3rp)
A vulnerability marked as problematic has been reported in go-git up to 5.18.x/6.0.0-alpha.2. This affects an unknown function. Performing a manipulation results in incorrect behavior order: validate before canonicalize.
This vulnerability was named CVE-2026-45022. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.