Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h5pw-h3j7-cj7f

Опубликовано: 08 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.5

Описание

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to create a repository where the content displayed in the web interface differed from the content available for download, due to improper handling of Git reference name resolution.

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to create a repository where the content displayed in the web interface differed from the content available for download, due to improper handling of Git reference name resolution.

EPSS

Процентиль: 9%
0.00187
Низкий

3.5 Low

CVSS3

Дефекты

CWE-706

Связанные уязвимости

CVSS3: 3.5
ubuntu
22 дня назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to create a repository where the content displayed in the web interface differed from the content available for download, due to improper handling of Git reference name resolution.

CVSS3: 3.5
nvd
22 дня назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could have allowed an authenticated user to create a repository where the content displayed in the web interface differed from the content available for download, due to improper handling of Git reference name resolution.

CVSS3: 4.3
fstec
23 дня назад

Уязвимость механизм разрешения имён Git-ссылок программной платформы на базе git для совместной работы над кодом GitLab CE/EE, позволяющая нарушителю нарушить целостность защищаемой информации

EPSS

Процентиль: 9%
0.00187
Низкий

3.5 Low

CVSS3

Дефекты

CWE-706