Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hq6-8c4w-ggxc

Опубликовано: 08 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Under certain conditions, access tokens may have been logged when an API request was made in a specific manner.

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Under certain conditions, access tokens may have been logged when an API request was made in a specific manner.

EPSS

Процентиль: 10%
0.00036
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Under certain conditions, access tokens may have been logged when an API request was made in a specific manner.

CVSS3: 4.9
nvd
больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions starting from 17.1 before 17.1.4, all versions starting from 17.2 before 17.2.2. Under certain conditions, access tokens may have been logged when an API request was made in a specific manner.

CVSS3: 4.9
debian
больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 4.9
fstec
больше 1 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостаточной защитой служебных данных, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 10%
0.00036
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200