Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jc2r-hgpx-4q9p

Опубликовано: 14 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to bypass package protection rules due to improper access control.

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to bypass package protection rules due to improper access control.

EPSS

Процентиль: 14%
0.00228
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1280

Связанные уязвимости

CVSS3: 4.3
ubuntu
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to bypass package protection rules due to improper access control.

CVSS3: 4.3
nvd
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to bypass package protection rules due to improper access control.

CVSS3: 4.3
debian
3 месяца назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions ...

CVSS3: 4.3
fstec
3 месяца назад

Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с нарушением порядка выполнения проверки контроля доступа, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

EPSS

Процентиль: 14%
0.00228
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1280