A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in question is CVE202619478 CVSS score 9.4, a case of code injection that allows an unauthenticated attacker to modify or delete publicly accessible GitLab projects and rewrite their data under certain conditions without requiring.📖 Read more.
🔗 Via "The Hacker News"
----------
👁️ Seen on @cibsecurity