GitPython - Tool

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
January 20, 2026
Last Seen
January 20, 2026

GitPython is a tool tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed January 20, 2026; most recent activity January 20, 2026.

Overview

The articles describe flaws in Anthropic's Git MCP server, a Git-based management/control plane used within Anthropic's infrastructure. The vulnerabilities enabled remote code execution, creating a high-severity risk for potential adversaries seeking to compromise the server or pivot within the environment. Anthropic quietly patched the issues on 2026-01-20, highlighting the importance of securing Git-based tooling and internal CI-like components.

Related Threat Clusters

  • Anthropic Fixes Remote Code Execution Flaws in Git MCP Server

    Anthropic has addressed three vulnerabilities in its Git MCP server, which could be exploited to remotely execute malicious code or overwrite files through prompt injection. The server connects various AI tools to Git…

    2 articles · Updated January 20, 2026

Recent Intelligence Reports

  • Anthropic quietly fixed flaws in its Git MCP server — Theregister · January 20, 2026
  • Anthropic quietly fixed flaws in its Git MCP server that allowed for remote code execution — Theregister · January 20, 2026

CVSS v3.1 Breakdown