Логотип exploitDog
bind:CVE-2021-39895
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-39895

Количество 4

Количество 4

ubuntu логотип

CVE-2021-39895

больше 4 лет назад

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

CVSS3: 6
EPSS: Низкий
nvd логотип

CVE-2021-39895

больше 4 лет назад

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

CVSS3: 6
EPSS: Низкий
debian логотип

CVE-2021-39895

больше 4 лет назад

In all versions of GitLab CE/EE since version 8.0, an attacker can set ...

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-c3rv-jv45-94rx

больше 3 лет назад

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-39895

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

CVSS3: 6
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-39895

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

CVSS3: 6
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-39895

In all versions of GitLab CE/EE since version 8.0, an attacker can set ...

CVSS3: 6
0%
Низкий
больше 4 лет назад
github логотип
GHSA-c3rv-jv45-94rx

In all versions of GitLab CE/EE since version 8.0, an attacker can set the pipeline schedules to be active in a project export so when an unsuspecting owner imports that project, pipelines are active by default on that project. Under specialized conditions, this may lead to information disclosure if the project is imported from an untrusted source.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу