Kusagadzikana kwakanyanya muGitLab

Kugadzirisa zvigadziriso zveGitLab mubatanidzwa wekusimudzira chikuva 15.3.1, 15.2.3 uye 15.1.5 kugadzirisa kusagadzikana kwakanyanya (CVE-2022-2884) iyo inobvumira mushandisi ane chokwadi nekuwana iyo API yekuunza data kubva kuGitHub kuti iite kodhi kure kure. server . Mashoko ekushanda haasati apihwa. Kusagadzikana kwakaonekwa nemuongorori wezvekuchengetedza sechikamu cheHackerOne's vulnerability bounty chirongwa.

Sekuita basa, zvinokurudzirwa kuti maneja adzime basa rekutumira kubva kuGitHub (muneGitLab web interface: "Menu" -> "Admin" -> "Settings" -> "General" -> "Kuonekwa uye zvidzoreso zvekupinda" - > "Import sosi" -> dzima "GitHub").

Source: opennet.ru

Voeg