PT-2025-2767 · Pagure+3 · Pagure+3

Published

2024-01-01

·

Updated

2026-01-29

·

CVE-2024-47516

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pagure (affected versions not specified)
Description A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Argument Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-47516
DLA-4390-1
USN-7984-1

Affected Products

Debian
Linuxmint
Pagure
Ubuntu