Описание
An issue has been discovered in GitLab EE/CE affecting all versions starting from 8.0 before 16.4. The product did not sufficiently warn about security implications of granting merge rights to protected branches.
Ссылки
- ExploitIssue Tracking
- ExploitIssue Tracking
- Permissions Required
- Permissions Required
Уязвимые конфигурации
Одно из
EPSS
6.6 Medium
CVSS3
9.1 Critical
CVSS3
Дефекты
Связанные уязвимости
An issue has been discovered in GitLab EE/CE affecting all versions starting from 8.0 before 16.4. The product did not sufficiently warn about security implications of granting merge rights to protected branches.
An issue has been discovered in GitLab EE/CE affecting all versions st ...
An issue has been discovered in GitLab EE/CE affecting all versions starting from 8.0 before 16.4. The product did not sufficiently warn about security implications of granting merge rights to protected branches.
Уязвимость программной платформы на базе git для совместной работы над кодом GitLab, связанная с недостаточной защитой служебных данных, позволяющая нарушителю получить доступ на чтение, изменение или удаление данных
EPSS
6.6 Medium
CVSS3
9.1 Critical
CVSS3