Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m37q-w59j-4vr4

Опубликовано: 29 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An issue has been discovered in GitLab CE/EE affecting versions 13.0 to 14.6.5, 14.7 to 14.7.4, and 14.8 to 14.8.2. Private GitLab instances with restricted sign-ups may be vulnerable to user enumeration to unauthenticated users through the GraphQL API.

An issue has been discovered in GitLab CE/EE affecting versions 13.0 to 14.6.5, 14.7 to 14.7.4, and 14.8 to 14.8.2. Private GitLab instances with restricted sign-ups may be vulnerable to user enumeration to unauthenticated users through the GraphQL API.

EPSS

Процентиль: 100%
0.92225
Критический

5.3 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 4 года назад

An issue has been discovered in GitLab CE/EE affecting versions 13.0 to 14.6.5, 14.7 to 14.7.4, and 14.8 to 14.8.2. Private GitLab instances with restricted sign-ups may be vulnerable to user enumeration to unauthenticated users through the GraphQL API.

CVSS3: 5.3
nvd
почти 4 года назад

An issue has been discovered in GitLab CE/EE affecting versions 13.0 to 14.6.5, 14.7 to 14.7.4, and 14.8 to 14.8.2. Private GitLab instances with restricted sign-ups may be vulnerable to user enumeration to unauthenticated users through the GraphQL API.

CVSS3: 5.3
debian
почти 4 года назад

An issue has been discovered in GitLab CE/EE affecting versions 13.0 t ...

EPSS

Процентиль: 100%
0.92225
Критический

5.3 Medium

CVSS3

Дефекты

CWE-287