GitLab Flaw Allows Account Takeover via XSS Attacks

Threat Level – Red | Vulnerability Report
Download PDF

Summary:

GitLab has addressed a high-severity vulnerability identified as CVE-2024-4835, which allowed unauthenticated attackers to take over user accounts through cross-site scripting (XSS) attacks. This XSS vulnerability was found in the VS code editor (Web IDE) integrated within GitLab.
 

Threat Level – Red | Vulnerability Report

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox