Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-56q9-jqvf-whqc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

EPSS

Процентиль: 22%
0.00069
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 5 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

CVSS3: 4.3
nvd
больше 5 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.

CVSS3: 4.3
debian
больше 5 лет назад

An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12 ...

EPSS

Процентиль: 22%
0.00069
Низкий