Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2512

Опубликовано: 05 авг. 2022
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. Membership changes are not reflected in TODO for confidential notes, allowing a former project members to read updates via TODOs.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 15.0.0 (включая) до 15.0.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
Версия от 15.1.0 (включая) до 15.1.4 (исключая)
cpe:2.3:a:gitlab:gitlab:15.2:*:*:*:enterprise:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 15.0.0 (включая) до 15.0.5 (исключая)
cpe:2.3:a:gitlab:gitlab:*:*:*:*:community:*:*:*
Версия от 15.1.0 (включая) до 15.1.4 (исключая)
cpe:2.3:a:gitlab:gitlab:15.2:*:*:*:community:*:*:*

EPSS

Процентиль: 38%
0.00167
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. Membership changes are not reflected in TODO for confidential notes, allowing a former project members to read updates via TODOs.

CVSS3: 6.5
debian
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions st ...

CVSS3: 6.5
github
больше 3 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. Membership changes are not reflected in TODO for confidential notes, allowing a former project members to read updates via TODOs.

EPSS

Процентиль: 38%
0.00167
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-Other