ZeroHour

CVE-2024-10043

PoC
CVSS 3.1
3.1 low
EPSS
<1%p38
Published
()
Modified
Description

An issue has been discovered in GitLab EE affecting all versions starting from 14.3 before 17.4.6, all versions starting from 17.5 before 17.5.4 all versions starting from 17.6 before 17.6.2, that allows group users to view confidential incident title through the Wiki History Diff feature, potentially leading to information disclosure.

Vendors
gitlab
Products
gitlab
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.