Vulnerability Details CVE-2023-5831
An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.0 before 16.3.6, all versions starting from 16.4 before 16.4.2, and all versions starting from 16.5.0 before 16.5.1 which have the `super_sidebar_logged_out` feature flag enabled. Affected versions with this default-disabled feature flag enabled may unintentionally disclose GitLab version metadata to unauthorized actors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.3%
CVSS Severity
CVSS v3 Score 3.7
Products affected by CVE-2023-5831
-
cpe:2.3:a:gitlab:gitlab:16.0.0
-
cpe:2.3:a:gitlab:gitlab:16.0.2
-
cpe:2.3:a:gitlab:gitlab:16.0.6
-
cpe:2.3:a:gitlab:gitlab:16.0.7
-
cpe:2.3:a:gitlab:gitlab:16.0.8
-
cpe:2.3:a:gitlab:gitlab:16.1.0
-
cpe:2.3:a:gitlab:gitlab:16.1.1
-
cpe:2.3:a:gitlab:gitlab:16.1.2
-
cpe:2.3:a:gitlab:gitlab:16.1.3
-
cpe:2.3:a:gitlab:gitlab:16.1.5
-
cpe:2.3:a:gitlab:gitlab:16.2.0
-
cpe:2.3:a:gitlab:gitlab:16.2.1
-
cpe:2.3:a:gitlab:gitlab:16.2.2
-
cpe:2.3:a:gitlab:gitlab:16.2.5
-
cpe:2.3:a:gitlab:gitlab:16.2.8
-
cpe:2.3:a:gitlab:gitlab:16.3
-
cpe:2.3:a:gitlab:gitlab:16.3.0
-
cpe:2.3:a:gitlab:gitlab:16.3.4
-
cpe:2.3:a:gitlab:gitlab:16.3.5
-
cpe:2.3:a:gitlab:gitlab:16.4.0
-
cpe:2.3:a:gitlab:gitlab:16.4.1
-
cpe:2.3:a:gitlab:gitlab:16.5.0