GitLab flaw exploited one day after disclosure, SecurityWeek reports
SecurityWeek says the critical flaw lets attackers read arbitrary files from a GitLab server without authentication.
TLDR
SecurityWeek reports that a GitLab vulnerability was exploited one day after disclosure. The publisher describes it as a critical-severity path traversal flaw that allows unauthenticated attackers to read arbitrary files from the server.
Combined views
3.3K
1 post, first seen 5d ago
GitLab flaw exploited one day after disclosure, SecurityWeek reports
SecurityWeek says the critical flaw lets attackers read arbitrary files from a GitLab server without authentication.
TLDR
SecurityWeek reports that a GitLab vulnerability was exploited one day after disclosure. The publisher describes it as a critical-severity path traversal flaw that allows unauthenticated attackers to read arbitrary files from the server.