ZeroHour

CVE-2024-6446

CVSS 3.1
3.5 low
EPSS
<1%p34
Published
()
Modified
Description

An issue has been discovered in GitLab affecting all versions starting from 17.1 to 17.1.7, 17.2 prior to 17.2.5 and 17.3 prior to 17.3.2. A crafted URL could be used to trick a victim to trust an attacker controlled application.

Vendors
gitlab
Products
gitlab
Weakness
CWE-840
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.