FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-02-02 08:34:31 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
4b7ed61f-7bbf-11ef-9369-2cf05da270f3Gitlab -- vulnerabilities

Gitlab reports:

Maintainer can leak Dependency Proxy password by changing Dependency Proxy URL via crafted POST request

AI feature reads unsanitized content, allowing for attacker to hide prompt injection

Project reference can be exposed in system notes


Discovery 2024-09-25
Entry 2024-09-26
gitlab-ce
gitlab-ee
>= 17.4.0 lt 17.4.1

>= 17.3.0 lt 17.3.4

>= 15.6.0 lt 17.2.8

CVE-2024-4278
CVE-2024-4099
CVE-2024-8974
https://about.gitlab.com/releases/2024/09/25/patch-release-gitlab-17-4-1-released/