Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-9512


An issue has been discovered in GitLab EE affecting all versions prior to 17.10.8, 17.11 prior to 17.11.4, and 18.0 prior to 18.0.2. It may have been possible for private repository to be cloned in case of race condition when a secondary node is out of sync.


Published

2025-06-12T14:15:29.680

Last Modified

2025-08-08T18:22:08.103

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-367

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application gitlab gitlab < 17.10.8 Yes
Application gitlab gitlab < 17.10.8 Yes
Application gitlab gitlab < 17.11.4 Yes
Application gitlab gitlab < 17.11.4 Yes
Application gitlab gitlab < 18.0.2 Yes
Application gitlab gitlab < 18.0.2 Yes

References