ptero-eggs icon indicating copy to clipboard operation
ptero-eggs copied to clipboard

Nginx exposes Git configuration

Open Miautier opened this issue 2 years ago • 1 comments

The automated created file /.git/config ist exposed to the internet and can be accessed through the browser. The GIT login name and the access token can thus be read out in plain text.

Miautier avatar Oct 07 '23 19:10 Miautier

yeah, I just realized this is a huge venerability and it could leak your private git repository.

ka0un avatar Jun 17 '24 03:06 ka0un