An issue has been discovered in GitLab EE affecting all versions starting from 15.7 before 15.10.8, all versions starting from 15.11 before 15.11.7, all versions starting from 16.0 before 16.0.2. It was possible to disclose issue notes to an unauthorized user at project export.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Oct 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-668 | NVD-CWE-Other |
Thu, 03 Oct 2024 06:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Insertion of Sensitive Information Into Sent Data in GitLab | |
Weaknesses | CWE-201 |
MITRE
Status: PUBLISHED
Assigner: GitLab
Published: 2023-06-07T00:00:00
Updated: 2024-10-03T06:23:10.083Z
Reserved: 2023-04-04T00:00:00
Link: CVE-2023-1825
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-06-07T17:15:09.900
Modified: 2024-10-08T19:39:52.900
Link: CVE-2023-1825
Redhat
No data.