Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q2f3-hg8j-4wcc

Опубликовано: 25 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5, starting from 17.1 prior to 17.1.3, and starting from 17.2 prior to 17.2.1 where certain project-level analytics settings could be leaked in DOM to group members with Developer or higher roles.

An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5, starting from 17.1 prior to 17.1.3, and starting from 17.2 prior to 17.2.1 where certain project-level analytics settings could be leaked in DOM to group members with Developer or higher roles.

EPSS

Процентиль: 21%
0.00066
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.4
nvd
11 месяцев назад

An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5, starting from 17.1 prior to 17.1.3, and starting from 17.2 prior to 17.2.1 where certain project-level analytics settings could be leaked in DOM to group members with Developer or higher roles.

CVSS3: 4.4
debian
11 месяцев назад

An issue was discovered in GitLab EE affecting all versions starting f ...

CVSS3: 4.9
fstec
около 1 года назад

Уязвимость компонента Setting Handler программной платформы на базе git для совместной работы над кодом GitLab, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 21%
0.00066
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200