GitLab 16.3 < 17.4.2 / 17.5 < 17.5.4 / 17.6 < 17.6.2 (CVE-2024-9633)

high Nessus Plugin ID 211450

Version 1.5

Dec 16, 2024, 8:29 AM

  • CVSS metrics ("CVSSv2 score" set to 7.8)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C")
  • CVSS metrics ("CVSSv3 score" set to 7.5)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H")
  • CVSSv2 severity (based on CVE-2024-9633, severity increased from "Low" to "High")
  • CVSSv3 severity (based on None, severity increased from "Low" to "High")

Plugin Feed: 202412160829

Version 1.4

Dec 9, 2024, 4:58 PM

  • IAVM reference

Plugin Feed: 202412091658

Version 1.3

Dec 7, 2024, 1:59 AM

  • CVSS metrics ("Cvssv4 score" set to 0.0)
  • CVSSv2 severity (based on None, severity decreased from "High" to "Low")
  • Detection (updated detection logic)
  • Plugin metadata

Plugin Feed: 202412070159

Version 1.2

Nov 22, 2024, 6:54 PM

  • IAVM reference
  • STIG Severity (set to "I")

Plugin Feed: 202411221854

Version 1.1

Nov 15, 2024, 9:33 PM

  • New

Plugin Feed: 202411152133

* Changelogs are generally available for changes made after Nov 1, 2022