CVE-2024-10082: codechecker authentication method confusion vulnerability allows logging in as the built-in root user from an external service
Authentication method confusion allows logging in as the built-in root user from an external service. The built-in root user is generated in a weak manner, cannot be disabled, and has universal access.
References
Detect and mitigate CVE-2024-10082 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →