MSCVE

GitHub: CVE-2026-32631 ‘git clone’ from manipulated repositories can leak NTLM hashes_MS:CVE-2026-32631

Description

CVE-2026-32631 is regarding a vulnerability where it is possible to obtain a user's NTLM hash by tricking them into cloning a malicious repository, or checking out a malicious branch that accesses an attacker-controlled server. By default, NTLM authentication does not need any user interaction. GitHub created this CVE on their behalf. The documented Visual Studio updates incorporate updates in Git which address this vulnerability.

Please see CVE-2026-32631 for more information.
Visit Original Source

Basic Information

ID MS:CVE-2026-32631
Published Apr 14, 2026 at 14:00

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.