Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mr56-56j8-x6r4

Опубликовано: 26 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that they created within the project

An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that they created within the project

EPSS

Процентиль: 39%
0.00488
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-285
CWE-425

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 2 лет назад

An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that they created within the project

CVSS3: 4.3
nvd
больше 2 лет назад

An authorization vulnerability exists in GitLab versions 14.0 prior to 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. An unauthorized attacker is able to assign arbitrary users to MRs that they created within the project

CVSS3: 4.3
debian
больше 2 лет назад

An authorization vulnerability exists in GitLab versions 14.0 prior to ...

EPSS

Процентиль: 39%
0.00488
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-285
CWE-425