Описание
A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows access to titles of private issue and MR.
Ссылки
- Broken Link
- Permissions Required
- Broken Link
- Permissions Required
Уязвимые конфигурации
Конфигурация 1Версия от 16.0.0 (включая) до 16.0.6 (исключая)
Одно из
cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:gitlab:gitlab:16.1.0:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 17%
0.00054
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-201
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 5.3
debian
больше 2 лет назад
A sensitive information leak issue has been discovered in GitLab EE af ...
CVSS3: 5.3
github
больше 2 лет назад
A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows access to titles of private issue and MR.
EPSS
Процентиль: 17%
0.00054
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-201
NVD-CWE-noinfo