CVE-2024-6301

Publication date

2024-06-25 13:02:20

Family

GitLab

State

PUBLISHED

Description

Lack of validation of origin in federation API in Conduit, allowing any remote server to impersonate any user from any server in most EDUs