Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8rw-g922-j95j

Опубликовано: 19 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

In all versions of GitLab CE/EE since version 12.0, a lower privileged user can import users from projects that they don't have a maintainer role on and disclose email addresses of those users.

In all versions of GitLab CE/EE since version 12.0, a lower privileged user can import users from projects that they don't have a maintainer role on and disclose email addresses of those users.

EPSS

Процентиль: 53%
0.00297
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 4 года назад

In all versions of GitLab CE/EE since version 12.0, a lower privileged user can import users from projects that they don't have a maintainer role on and disclose email addresses of those users.

CVSS3: 4.3
nvd
почти 4 года назад

In all versions of GitLab CE/EE since version 12.0, a lower privileged user can import users from projects that they don't have a maintainer role on and disclose email addresses of those users.

CVSS3: 4.3
debian
почти 4 года назад

In all versions of GitLab CE/EE since version 12.0, a lower privileged ...

EPSS

Процентиль: 53%
0.00297
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-668