Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8x29-wc3v-56mg

Опубликовано: 26 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies.

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies.

EPSS

Процентиль: 11%
0.00204
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-349

Связанные уязвимости

CVSS3: 4.3
nvd
29 дней назад

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with developer-role permissions could have influenced the execution environment of Pipeline Execution Policy enforcement jobs, due to improper handling of job dependencies.

EPSS

Процентиль: 11%
0.00204
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-349