SecurityVulns

CVE-2024-4006 | GitLab Community Edition/Enterprise Edition up to 16.9.5/16.10.3/16.11.0 GraphQL Subscription authorization

A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 16.9.5/16.10.3/16.11.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component GraphQL Subscription Handler. The manipulation leads to incorrect authorization.

This vulnerability is known as CVE-2024-4006. The attack can be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More