PT-2024-18467 · Quarkus · Quarkus

Nick Tait

·

Published

2024-03-13

·

Updated

2024-04-03

·

CVE-2024-1979

CVSS v3.1

3.5

Low

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Quarkus (affected versions not specified)
Description A vulnerability was found in Quarkus where, under certain conditions related to the Continuous Integration (CI) process, git credentials could be inadvertently published. This could put the git repository at risk.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2024-1979
GHSA-7G97-7R3C-5CC6

Affected Products

Quarkus