Vulnerabilities
Vulnerable Software
Gitlab:  >> Gitlab  >> 17.1.1  Security Vulnerabilities
An issue was discovered in GitLab CE/EE affecting all versions starting from 15.8 prior to 16.11.6, starting from 17.0 prior to 17.0.4, and starting from 17.1 prior to 17.1.2, which allows an attacker to trigger a pipeline as another user under certain circumstances.
CVSS Score
9.6
EPSS Score
0.011
Published
2024-07-11
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to 17.1.2 where a Developer user with `admin_compliance_framework` custom role may have been able to modify the URL for a group namespace.
CVSS Score
4.9
EPSS Score
0.0
Published
2024-07-11
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.0 prior to 17.0.4 and from 17.1 prior to 17.1.2 where a Guest user with `admin_push_rules` permission may have been able to create project-level deploy tokens.
CVSS Score
3.8
EPSS Score
0.001
Published
2024-07-11
An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11.6, starting from 17.0 prior to 17.0.4, and starting from 17.1 prior to 17.1.2 in which a user with `admin_group_member` custom role permission could ban group members.
CVSS Score
2.7
EPSS Score
0.001
Published
2024-07-11


Contact Us

Shodan ® - All rights reserved