CVE-2024-4099
CVE-2024-4099
Título es
CVE-2024-4099
Jue, 26/09/2024 – 23:15
Tipo
CWE-116
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-4099
Descripción en
An issue has been discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.2.8, from 17.3 prior to 17.3.4, and from 17.4 prior to 17.4.1. An AI feature was found to read unsanitized content in a way that could have allowed an attacker to hide prompt injection.
27/09/2024
27/09/2024
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
Gravedad 3.1 (CVSS 3.1 Base Score)
3.10
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
LOW
Referencias
Enviar en el boletín
Off