Описание
An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to 16.8.4, and 16.8.3 prior to 16.9.2. An attacker could bypass CODEOWNERS by utilizing a crafted payload in an old feature branch to perform malicious actions.
Ссылки
- Release Notes
- ExploitIssue Tracking
- Permissions Required
- Release Notes
- ExploitIssue Tracking
- Permissions Required
Уязвимые конфигурации
Одно из
EPSS
7.7 High
CVSS3
8 High
CVSS3
Дефекты
Связанные уязвимости
An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to 16.8.4, and 16.8.3 prior to 16.9.2. An attacker could bypass CODEOWNERS by utilizing a crafted payload in an old feature branch to perform malicious actions.
An authorization bypass vulnerability was discovered in GitLab affecti ...
An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to 16.8.4, and 16.8.3 prior to 16.9.2. An attacker could bypass CODEOWNERS by utilizing a crafted payload in an old feature branch to perform malicious actions.
EPSS
7.7 High
CVSS3
8 High
CVSS3