Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ff73-cwc3-6v5j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

EPSS

Процентиль: 67%
0.00544
Низкий

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
nvd
около 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system notes from a GraphQL endpoint.

CVSS3: 7.5
debian
около 6 лет назад

An information disclosure vulnerability exists in GitLab CE/EE <v12.3. ...

EPSS

Процентиль: 67%
0.00544
Низкий

Дефекты

CWE-862