Improper authorization in Gitlab EE affecting all versions from 12.3.0 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1 allows an unauthorized access to security reports in MR.
Metrics
Affected Vendors & Products
References
History
Mon, 10 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-285 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitLab
Published: 2023-04-05T00:00:00.000Z
Updated: 2025-02-10T20:52:43.715Z
Reserved: 2023-03-03T00:00:00.000Z
Link: CVE-2023-1167
Updated: 2024-08-02T05:40:58.086Z
Status : Modified
Published: 2023-04-05T21:15:07.243
Modified: 2025-02-10T21:15:14.280
Link: CVE-2023-1167
No data.
ReportizFlow