Severity: Critical
CVSS Score: 8.1
All versions of package git-clone are vulnerable to Command Injection due to insecure usage of the --upload-pack feature of git.