CVE-2024-47515

High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability was found in Pagure. Support of symbolic links during repository archiving of repositories allows the disclosure of local files. This flaw allows a malicious user to take advantage of the Pagure instance.

Published 2024-12-24. Last modified 2026-06-17.