GitLab 已修复 GitLab AI Gateway 组件中的一个漏洞,该漏洞影响以下所有版本: 18.1.6 至 19.2.4(不含 19.2.4)之间的所有 18.1.x 和 19.2.x 版本; 19.3 至 19.3.2(不含 19.3.2)之间的所有 19.3.x 版本; 19.4 至 19.4.1(不含 19.4.1)之间的所有 19.4.x 版本。 在特定条件下,拥有 Duo Agent Platform 访问权限的经过身份验证的攻击者可通过精心构造的流配置(flow configuration)
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| GitLab | GitLab AI Gateway | 18.1.6< 19.2.4 |
affected |
19.3< 19.3.2 |
affected | ||
19.4< 19.4.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitLab | GitLab AI Gateway | 18.1.6 ~ 19.2.4 |
cpe:2.3:a:gitlab:ai-gateway:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet