Описание
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an authenticated user with the ability to create a group to add themselves to any project that is inside a subgroup.
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | DNE | |
cosmic | DNE | |
devel | DNE | |
esm-apps/xenial | not-affected | code not present |
esm-infra-legacy/trusty | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 9.3.8, 9.2.8, 9.1.8, 9.0.11, 8.17.7 |
Показывать по
6.5 Medium
CVSS2
6.3 Medium
CVSS3
Связанные уязвимости
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an authenticated user with the ability to create a group to add themselves to any project that is inside a subgroup.
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.1 ...
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an authenticated user with the ability to create a group to add themselves to any project that is inside a subgroup.
6.5 Medium
CVSS2
6.3 Medium
CVSS3