CVE-2024-47515
CVSS 3.1 Score 8.1 of 10 (high)
Details
Published Dec 24, 2024
Updated: Feb 6, 2025
CWE ID 61
Summary
CVE-2024-47515 is a vulnerability affecting Pagure, a popular Git-like web interface. The issue involves the improper handling of symbolic links during repository archiving. An attacker can exploit this vulnerability to disclose local files on the affected Pagure instance, potentially gaining unauthorized access to sensitive information. This issue poses a significant risk to organizations using Pagure for their Git repositories and requires immediate attention and remediation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.