Severe vulnerabilities addressed by GitLab, others

Numerous severe security issues have been remediated by GitLab, Citrix, and VMware in updates to several of their products, reports The Hacker News. Aside from addressing a medium severity vulnerability enabling URL alterations for a group namespace, tracked as CVE-2024-5257, GitLab has also issued a fix for the critical flaw in GitLab Community Edition and Enterprise Edition software, tracked as CVE-2024-6385, which could be leveraged for arbitrary pipeline job execution.

Source: SC Magazine