Numerous severe security issues have been remediated by GitLab, Citrix, and VMware in updates to several of their products, reports The Hacker News. Aside from addressing a medium severity vulnerability enabling URL alterations for a group namespace, tracked as CVE-2024-5257, GitLab has also issued a fix for the critical flaw in GitLab Community Edition and Enterprise Edition software, tracked as CVE-2024-6385, which could be leveraged for arbitrary pipeline job execution.
Source: SC Magazine