CVE-2024-47516
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Mar 26, 2025
Updated: Mar 27, 2025
CWE ID 88
Summary
CVE-2024-47516 is a newly disclosed vulnerability affecting the Git functionality in Pagure. This issue allows an attacker to inject malicious arguments during the retrieval of repository history, resulting in remote code execution on the vulnerable Pagure instance. This can potentially compromise the entire system and lead to data theft or unauthorized system access. Users are strongly advised to update their Pagure installations as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.