Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-3399

Опубликовано: 06 нояб. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.5

Описание

An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

upstream

released

16.4.4+ds2-2

Показывать по

РелизСтатусПримечание
devel

needs-triage

esm-apps/noble

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

DNE

noble

needs-triage

oracular

needs-triage

plucky

needs-triage

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 13%
0.00045
Низкий

8.5 High

CVSS3

Связанные уязвимости

CVSS3: 8.5
nvd
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.

CVSS3: 8.5
debian
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions start ...

CVSS3: 6.5
github
больше 1 года назад

An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.

EPSS

Процентиль: 13%
0.00045
Низкий

8.5 High

CVSS3

Уязвимость CVE-2023-3399