CVE-2024-4472 - GitLab GraphQL Log Retention of Dependency Proxy Credentials Information Disclosure

2 months ago 41
ARTICLE AD BOX
CVE ID : CVE-2024-4472
Published : Sept. 12, 2024, 7:15 p.m. | 24 minutes ago
Description : An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 17.1.7, starting from 17.2 prior to 17.2.5, and starting from 17.3 prior to 17.3.2, where dependency proxy credentials are retained in graphql Logs.
Severity: 4.0 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article