CVE detail
CVE-2023-42798 — CVE-2023-42798
Published 2023-09-22 · Modified 2026-06-17 · Vendor hollowaykeanho · Product automataci · Source nvd
HIGH
severity
CVSS-derived band
0.0032
EPSS probability
exploitation probability, 30d
25.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
AutomataCI is a template git repository equipped with a native built-in semi-autonomous CI tools. An issue in versions 1.4.1 and below can let a release job reset the git root repository to the first commit. Version 1.5.0 has a patch for this issue. As a workaround, make sure the `PROJECT_PATH_RELEASE` (e.g. `releases/`) directory is manually and actually `git cloned` properly, making it a different git repostiory from the root git repository.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References