Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-12053

Опубликовано: 25 июн. 2026
Источник: nvd
CVSS3: 8.6
CVSS3: 7.5
EPSS Низкий

Описание

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.1 that under certain conditions could have allowed a user to access sensitive information that had already been committed to a project, due to insufficient output filtering in Duo Workflows.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gitlab:gitlab:19.1.0:*:*:*:enterprise:*:*:*

EPSS

Процентиль: 39%
0.00483
Низкий

8.6 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 8.6
github
около 1 месяца назад

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.1 that under certain conditions could have allowed a user to access sensitive information that had already been committed to a project, due to insufficient output filtering in Duo Workflows.

CVSS3: 8.6
fstec
около 1 месяца назад

Уязвимость инструмента Duo Workflows программной платформы на базе git для совместной работы над кодом GitLab EE/ CE, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 39%
0.00483
Низкий

8.6 High

CVSS3

7.5 High

CVSS3

Дефекты

CWE-532