Описание
In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.
| Релиз | Статус | Примечание |
|---|---|---|
| esm-apps-legacy/xenial | ignored | not maintainable |
| esm-apps/xenial | ignored | end of ESM support, was ignored [not maintainable] |
| trusty | ignored | end of standard support |
| upstream | needs-triage | |
| xenial | ignored | end of standard support |
Показывать по
10
4 Medium
CVSS2
4.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 4.3
nvd
больше 4 лет назад
In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.
CVSS3: 4.3
debian
больше 4 лет назад
In all versions of GitLab CE/EE since version 11.3, the endpoint for a ...
CVSS3: 4.3
github
больше 4 лет назад
In all versions of GitLab CE/EE since version 11.3, the endpoint for auto-completing Assignee discloses the members of private groups.
4 Medium
CVSS2
4.3 Medium
CVSS3