Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wgj-fxqf-wxj2

Опубликовано: 01 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. Under certain circumstances, a malicious actor bypass prohibited branch checks using a specially crafted branch name to manipulate repository content in the UI.

An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. Under certain circumstances, a malicious actor bypass prohibited branch checks using a specially crafted branch name to manipulate repository content in the UI.

EPSS

Процентиль: 24%
0.00083
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 2 лет назад

An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. Under certain circumstances, a malicious actor bypass prohibited branch checks using a specially crafted branch name to manipulate repository content in the UI.

CVSS3: 4.8
nvd
около 2 лет назад

An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5.3, all versions starting from 16.6 before 16.6.1. Under certain circumstances, a malicious actor bypass prohibited branch checks using a specially crafted branch name to manipulate repository content in the UI.

CVSS3: 4.8
debian
около 2 лет назад

An issue has been discovered in GitLab affecting all versions before 1 ...

EPSS

Процентиль: 24%
0.00083
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-94