CVE-2024-47516

CRITICAL

Pagure - RCE

Title source: llm

Description

A vulnerability was found in Pagure. An argument injection in Git during retrieval of the repository history leads to remote code execution on the Pagure instance.

Scores

CVSS v3 9.8
EPSS 0.0140
EPSS Percentile 80.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-88
Status draft

Timeline

Published Mar 26, 2025
Tracked Since Feb 18, 2026