September 13, 2024 | GitLab has patched a critical vulnerability (CVE-2024-6678) with a CVSS score of 9.9, which could allow attackers to trigger a CI/CD pipeline as an arbitrary user, leading to privilege escalation and software supply chain risks. Experts stress the need for immediate patching and supply chain security measures.
Thanks for signing up!