Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fcmm-jq9f-cc5p

Опубликовано: 12 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled

EPSS

Процентиль: 48%
0.00245
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 3 лет назад

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled

CVSS3: 4.3
nvd
больше 3 лет назад

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled

CVSS3: 4.3
debian
больше 3 лет назад

An improper authorization issue has been discovered in GitLab CE/EE af ...

EPSS

Процентиль: 48%
0.00245
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-863