Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2gjq-2933-hpjg

Опубликовано: 13 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 2.7

Описание

An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior to 17.8.5, and 17.9 prior to 17.9.2 which allowed a user with a custom permission to approve pending membership requests beyond the maximum number of allowed users.

An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior to 17.8.5, and 17.9 prior to 17.9.2 which allowed a user with a custom permission to approve pending membership requests beyond the maximum number of allowed users.

EPSS

Процентиль: 1%
0.00013
Низкий

2.7 Low

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 2.7
nvd
3 месяца назад

An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior to 17.8.5, and 17.9 prior to 17.9.2 which allowed a user with a custom permission to approve pending membership requests beyond the maximum number of allowed users.

CVSS3: 2.7
debian
3 месяца назад

An issue was discovered in GitLab EE affecting all versions from 16.5 ...

CVSS3: 2.7
fstec
3 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab Enterprise Edition, связанная с недостатками механизма авторизации, позволяющая нарушителю оказать влияние на целостность защищаемой информации

EPSS

Процентиль: 1%
0.00013
Низкий

2.7 Low

CVSS3

Дефекты

CWE-863