{
  "title": "CVE del giorno — CVE-2026-78676 (CVSS 9,8, critica)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE del giorno — CVE-2026-78676 (CVSS 9,8, critica)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-78676: vulnerabilità critica, CVSS 9,8/10, tipo CWE-88, sfruttabile da"
    }
  ],
  "description": "CVE-2026-78676: vulnerabilità critica, CVSS 9,8/10, tipo CWE-88, sfruttabile da remoto, senza privilegi, senza interazione utente. GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives…",
  "keywords": [
    "cve",
    "cve-2026-78676",
    "vulnerabilità",
    "vulnerabilità critica",
    "cwe-88",
    "cvss",
    "sicurezza informatica",
    "cybersecurity",
    "nvd",
    "aggiornamento di sicurezza"
  ],
  "scenes": [
    {
      "title": "CVE-2026-78676",
      "subtitle": "CVSS 9,8",
      "text": "CVE-2026-78676: gravità critica, punteggio CVSS 9,8 su 10 secondo il National Vulnerability Database."
    },
    {
      "title": "CWE-88",
      "subtitle": "CWE-88 · CVSS v3.1",
      "text": "GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives like core.hooksPath. Attackers can craft config files…"
    },
    {
      "title": "ESPOSIZIONE E MITIGAZIONE",
      "subtitle": "sfruttabile da remoto, senza privilegi, senza interazione utente",
      "text": "Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD."
    }
  ],
  "publication_date": "2026-08-27T00:06:35.166Z",
  "duration": 20,
  "topic": "cve",
  "lang": "it",
  "translation_group": "cve-2026-08-27",
  "poster": "cve-2026-08-27.jpg",
  "preview": "cve-2026-08-27.gif",
  "og_card": "cve-2026-08-27.og.jpg",
  "audiogram": "cve-2026-08-27.audiogram.mp4",
  "captions": "cve-2026-08-27.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-78676: gravità critica, punteggio CVSS 9,8 su 10 secondo il National Vulnerability Database. GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives like core.hooksPath. Attackers can craft config files… Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-78676: gravità critica, punteggio CVSS 9,8 su 10 secondo il National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives like core.hooksPath. Attackers can craft config files…"
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD."
    }
  ]
}