Site icon API Security Blog

FreeBSD : Gitlab — vulnerabilities (49ef501c-62b6-11ef-bba5-2cf05da270f3)

The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by multiple vulnerabilities as referenced in the 49ef501c-62b6-11ef-bba5-2cf05da270f3 advisory. Gitlab reports: The GitLab Web Interface Does Not Guarantee Information Integrity When Downloading Source Code from Releases Denial of Service by importing maliciously crafted GitHub repository Prompt injection in Resolve Vulnerabilty results in arbitrary command execution in victim's pipeline An unauthorized user can perform certain actions through GraphQL after a group owner enables IP restrictions Tenable has extracted the preceding description block directly from the FreeBSD security advisory. Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version…Read More

Exit mobile version