Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fv26-qm6r-mmq5

Опубликовано: 08 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.1, starting from 17.6 prior to 17.6.1, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.1, starting from 17.6 prior to 17.6.1, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

EPSS

Процентиль: 5%
0.00023
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-538

Связанные уязвимости

CVSS3: 6.5
ubuntu
5 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

CVSS3: 6.5
nvd
5 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5.5, starting from 17.6 prior to 17.6.3, and starting from 17.7 prior to 17.7.1. Under certain conditions, access tokens may have been logged when API requests were made in a specific manner.

CVSS3: 6.5
debian
5 месяцев назад

An issue was discovered in GitLab CE/EE affecting all versions startin ...

CVSS3: 6.5
fstec
5 месяцев назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с утечкой информации о файлах и каталогах, позволяющая нарушителю раскрыть токен доступа в журналах

EPSS

Процентиль: 5%
0.00023
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-538