NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
crates.io · #801 most downloaded on crates.io
Native bindings to the libgit2 library
Last release 1 months ago
21 Aug 2026
Ships fairly regularly
a new release about every 3 months
Some releases are documented
notes for 24 of the last 60 stable releases
4 versions withdrawn
withdrawn after publishing
12 years old
152 releases · first in 2014
Updated to libgit2 1.9.7. This fixes CVE-2026-5917, a potential command injection on the remote host via unescaped repository paths in the libssh2 SSH…
Updated to libgit2 1.9.6. This fixes SSH known-host loading with an invalid home directory, an Android crash when HOME is unset, and hidden symbol vis
HOME is unset,
and hidden symbol visibility for static builds.One column per quarter.
Updated to libgit2 1.9.5. This fixes CVE-2026-53583, CVE-2026-53584, CVE-2026-53585, CVE-2026-53586, CVE-2026-53587, and GHSA-wfx7-g85r-q6vw.
GIT_OPT_ADD_SSL_X509_CERT.GIT_OPT_GET_PACK_MAX_OBJECT_SIZE and GIT_OPT_SET_PACK_MAX_OBJECT_SIZE.0.18.4...0.18.5 ### Changed - Updated to libgit2 1.9.4 #1260
Added binding for git_oid_is_zero, replacing the deprecated git_oid_iszero. #1205
git_config_backend::unlock.
Previously the second c_int argument was missing
and the declaration was unusable.
#1181unstable-sha256 Cargo feature.
This reflects upstream libgit2's GIT_EXPERIMENTAL_SHA256 feature gate,
and requires the linked libgit2 C library to be built with the experimental flag.
When enabled, the build supports linking against a system libgit2-experimental.so.
See the feature description in Cargo.toml for ABI-stability caveats.
#1201git_repository_oid_type.
#1204git_oid_is_zero, replacing the deprecated git_oid_iszero.
#1205git_remote_oid_type.
#1242GIT_REPOSITORY_INIT_RELATIVE_GITLINK flag.
#1242git_merge_file_input API, including git_merge_file_input_init.
#1210git_odb_stream and git_odb_stream_t.
#1181git_reference_iterator.
#1181git2/sys/config.h,
including the missing iterator function on git_config_backend.
#1181git_reference_dup.
#1233git_signature_default_from_env.
#1237Note that this release fixes two security issues. However, the Rust bindings do not provide direct support for the affected APIs. In particular:
Updated to libgit2 1.9.2 #1195
Note that this release fixes two security issues. However, the Rust bindings do not provide direct support for the affected APIs. In particular:
libgit2-sys crate does not support building the vendored C library with the GIT_SSH_EXEC setting. This will only be an issue if you are binding to a system-provided library built with this setting.git2 crate does not support custom SSH credentials. However, the libgit2-sys crate does export the git_cred_ssh_custom_new C-binding. Any projects using the C bindings directly are affected.0.18.1...0.18.2 ### Changed - Updated to libgit2 1.9.1 #1169
Added binding for git_branch_upstream_merge #1131
git_branch_upstream_merge
#1131git_merge_file_options and git_merge_file_result, git_merge_file_options_init, git_merge_file_from_index, git_merge_file_result_free, and updated git_merge_file_flag_t.
#1062Added bindings for git_repository_commondir #1079
❗ Updated to libgit2 1.8.1 #1032
❗ Updated to libgit2 1.7.2. This fixes CVE-2024-24575 and CVE-2024-24577. #1017
Fixed publish of 0.16.0 missing the libgit2 submodule.
Added LIBGIT2_NO_VENDOR environment variable to force using the system libgit2. #966
Added bindings for stash options. #930
Updated to libgit2 1.6.4. This brings in a minor fix on Windows when the ProgramData directory does not exist. #948
Added support for the deprecated group-writeable blob file mode. #887
git_remote_name_is_valid, git_reference_name_is_valid, and git_tag_name_is_valid.
#882git_indexer support.
#911git_index_find_prefix.
#903GIT_DIFF_ constants have been changed to be a git_diff_option_t type.
#935Updated the bundled libgit2 to 1.5.1. a233483a3952d6112653be86fb5ce65267e3d5ac
Added variants to git_cert_ssh_raw_type_t. #909
Added bindings for ownership validation. #839
Updated the bundled libgit2 to 1.4.5.
Added bindings for git_commit_body #835
Updated the bundled libgit2 to 1.5.0-alpha. #822
zlib-ng-compat Cargo feature, libssh2-sys is no longer automatically included unless you also enable the ssh feature.
#833Added bindings for git_odb_exists_ext. #818
Updated the bundled libgit2 to 1.4.2. #815
Changed libgit2-sys to use the presence of the src directory instead of .git to determine if it has a git submodule that needs updating. #801
src directory instead of .git to determine if it has a git submodule that needs updating.
#801Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →