← Back

CVE-2024-8974

nvd nist
Published: Sep 26, 2024Modified: Oct 4, 2024

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

Information disclosure in Gitlab EE/CE affecting all versions from 15.6 prior to 17.2.8, 17.3 prior to 17.3.4, and 17.4 prior to 17.4.1 in specific conditions it was possible to disclose to an unauthorised user the path of a private project."

Affected (6)

Products: Gitlab: Gitlab
1 product
Gitlab
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Gitlab
From 15.6.0 to 17.2.8
From 17.3.0 to 17.3.4
From 15.6.0 to 17.2.8
From 17.3.0 to 17.3.4
Version 17.4.0
Version 17.4.0

References (1)

Timeline

No history available yet.