ZeroHour

CVE-2024-7110

CVSS 3.1
6.4 medium
EPSS
<1%p29
Published
()
Modified
Description

An issue was discovered in GitLab EE affecting all versions starting 17.0 to 17.1.6, 17.2 prior to 17.2.4, and 17.3 prior to 17.3.1 allows an attacker to execute arbitrary command in a victim's pipeline through prompt injection.

Vendors
gitlab
Products
gitlab
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.