Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jj6-7vgp-rg47

Опубликовано: 08 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

EPSS

Процентиль: 0%
0.00005
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-284
CWE-862

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
nvd
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16.8 prior to 16.8.2 which allows a maintainer to change the name of a protected branch that bypasses the security policy added to block MR.

CVSS3: 6.7
debian
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions from ...

CVSS3: 6.7
fstec
больше 1 года назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостатками контроля доступа, позволяющая нарушителю обойти существующие ограничения безопасности

EPSS

Процентиль: 0%
0.00005
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-284
CWE-862