News

GitLab has released critical updates to address multiple vulnerabilities, the most severe of them (CVE-2024-6678) allowing an attacker to trigger pipelines as arbitrary users under certain conditions.
GitLab addressed arbitrary pipeline execution vulnerabilities multiple times this year, including CVE-2024-6678 last month, CVE-2024-6385 in July, and CVE-2024-5655 in June, all rated critical.
GitLab is a DevOps platform with more than 30 million registered users, according to BleepingComputer.More than half of Fortune 100 companies use it for their DevOps needs, including NASA, Intel ...
GitLab Sends Users Scrambling Again With New CI/CD Pipeline Takeover Vuln GitLab Sends Users Scrambling Again With New CI/CD Pipeline Takeover Vuln. The bug (CVE-2024-6385) is similar — but not ...
A critical GitLab vulnerability could allow an attacker to run a pipeline as another user. GitLab is a popular Git repository, second only to GitHub, with millions of active users. This week, it ...
After checking the pipeline file into the application's repository, the job moves into the queue. As soon as a GitLab runner is available, the defined steps run sequentially.
To learn more about the OverOps’ integration with GitLab and how to surface critical runtime insight directly within the CI pipeline: Register to attend a live webinar, co-hosted with GitLab, on ...
News. GrammaTech Partners with GitLab to Add Shift-Left Capabilities to the CI/CD Pipeline. By John K. Waters; March 11, 2021; App security testing tools provider GrammaTech today announced a ...