Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-39876

Опубликовано: 28 мар. 2022
Источник: ubuntu
Приоритет: medium
CVSS2: 4
CVSS3: 4.3

Описание

In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.

РелизСтатусПримечание
esm-apps-legacy/xenial

ignored

not maintainable
esm-apps/xenial

ignored

end of ESM support, was ignored [not maintainable]
trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

4 Medium

CVSS2

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
больше 4 лет назад

In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.

CVSS3: 4.3
debian
больше 4 лет назад

In all versions of GitLab CE/EE since version 11.3, the endpoint for a ...

CVSS3: 4.3
github
больше 4 лет назад

In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.

4 Medium

CVSS2

4.3 Medium

CVSS3