Insecure Temporary File Exposure in Bash Git Prompt by MagicMonty
CVE-2025-61659
What is CVE-2025-61659?
The Bash Git Prompt versions 2.6.1 to 2.7.1 contain a vulnerability due to the insecure handling of temporary files. Specifically, the application creates a temporary file in the /tmp directory using a predictable naming convention. This predictable filename could be leveraged by an attacker to access sensitive information from the file, leading to potential unauthorized access and data exposure. Users of affected versions are encouraged to review their configurations and apply mitigations as necessary to secure their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
bash-git-prompt 2.6.1 <= 2.7.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
