Source |
The Hacker News |
Identifiant |
4383630 |
Date de publication |
2022-04-01 21:03:58 (vue: 2022-04-02 04:05:44) |
Titre |
GitLab Releases Patch for Critical Vulnerability That Could Let Attackers Hijack Accounts |
Texte |
DevOps platform GitLab has released software updates to address a critical security vulnerability that, if potentially exploited, could permit an adversary to seize control of accounts.
Tracked as CVE-2022-1162, the issue has a CVSS score of 9.1 and is said to have been discovered internally by the GitLab team.
"A hardcoded password was set for accounts registered using an |
Notes |
|
Envoyé |
Oui |
Condensat |
1162 2022 accounts address adversary an as cve attackers been control could critical cvss devops discovered exploited gitlab hardcoded has have hijack internally issue let password patch permit platform potentially registered released releases said score security seize set software team tracked updates using vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|