/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2024-6389

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-6389

CGA ID

CGA-jmxg-crjf-wcg7

Severity

Unknown

Description

An issue was discovered in GitLab-CE/EE affecting all versions starting with 17.0 before 17.1.7, 17.2 before 17.2.5, and 17.3 before 17.3.2. An attacker as a guest user was able to access commit information via the release Atom endpoint, contrary to permissions.

References

  • https://images.chainguard.dev/security/CGA-jmxg-crjf-wcg7

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs