Описание
An information disclosure issue was discovered in GitLab CE/EE 8.14 and later, by using the move issue feature which could result in disclosure of the newly created issue ID.
Ссылки
- PatchRelease NotesVendor Advisory
- ExploitVendor Advisory
- Permissions Required
- PatchRelease NotesVendor Advisory
- ExploitVendor Advisory
- Permissions Required
Уязвимые конфигурации
Конфигурация 1Версия от 8.14.0 (включая) до 11.11.7 (исключая)Версия от 8.14.0 (включая) до 11.11.7 (исключая)
Одно из
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 64%
0.00476
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-200
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 4.3
ubuntu
больше 5 лет назад
An information disclosure issue was discovered in GitLab CE/EE 8.14 and later, by using the move issue feature which could result in disclosure of the newly created issue ID.
CVSS3: 4.3
debian
больше 5 лет назад
An information disclosure issue was discovered in GitLab CE/EE 8.14 an ...
github
около 3 лет назад
An information disclosure issue was discovered in GitLab CE/EE 8.14 and later, by using the move issue feature which could result in disclosure of the newly created issue ID.
EPSS
Процентиль: 64%
0.00476
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-200
NVD-CWE-noinfo