An improper access control vulnerability in GitLab CE/EE affecting all versions from 13.11 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allows an unauthorized user to access pipeline analytics even when public pipelines are disabled
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitLab
Published: 2022-04-04T19:46:04
Updated: 2024-08-02T23:55:22.835Z
Reserved: 2022-03-26T00:00:00
Link: CVE-2022-1105
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-04T20:15:09.703
Modified: 2024-11-21T06:40:02.733
Link: CVE-2022-1105
Redhat
No data.