CVE-2024-6678 | GitLab Community Edition/Enterprise Edition up to 17.1.6/17.2.4/17.3.1 Pipeline authentication spoofing (Issue 471923)
A vulnerability was found in GitLab Community Edition and Enterprise Edition up to 17.1.6/17.2.4/17.3.1. It has been classified as critical. This affects an unknown part of the component Pipeline Handler. The manipulation leads to authentication bypass by spoofing.
This vulnerability is uniquely identified as CVE-2024-6678. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.