CVE-2025-54583 - CVE House
Back to Database
Status published High CVE-2025-54583

GitProxy bypasses approvals when pushing multiple branches

Vulnerability Description

GitProxy is an application that stands between developers and a Git remote endpoint (e.g., github.com). Versions 1.19.1 and below allow users to push to remote repositories while bypassing policies and explicit approvals. Since checks and plugins are skipped, code containing secrets or unwanted changes could be pushed into a repository. This is fixed in version 1.19.2.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-54583

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

git-proxy
Vulnerable Versions:
< 1.19.2

Timeline

Official Publish: July 30th, 2025
Last Modified: July 30th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)