Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2024-7110

An issue was discovered in GitLab EE affecting all versions starting 17.0 to 17.1.6, 17.2 prior to 17.2.4, and 17.3 prior to 17.3.1 allows an attacker to execute arbitrary command in a victim's pipeline through prompt injection.

  • Published: Aug 22, 2024
  • Updated: May 4, 2025
  • CVE: CVE-2024-7110
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.4
  • AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N

CWEs:

OWASP TOP 10: