CVE-2024-9596

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Oct 10, 2024
Updated: Oct 16, 2024
CWE ID 540

Summary

CVE-2024-9596 is a vulnerability affecting GitLab Enterprise Edition (EE). Versions 16.6 to 17.2.9, 17.3 to 17.3.5, and 17.4 to 17.4.2 are impacted. This issue enables unauthenticated attackers to ascertain the GitLab instance's version number, potentially allowing them to target known vulnerabilities or exploit specific version-related weaknesses. This information disclosure vulnerability could lead to further security risks. Users are advised to upgrade their GitLab EE installations to the latest versions to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share