Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions from 14.9.0 prior to 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
N/A
Vulnerability Title
GitLab 授权问题漏洞
Vulnerability Description
GitLab是美国GitLab公司的一个开源的端到端软件开发平台,具有内置的版本控制、问题跟踪、代码审查、CI/CD(持续集成和持续交付)等功能。Guest是一个应用产品。 Gitlab Community Edition 0.1.5版本到14.10.0版本和GitLab Enterprise Edition 6.2.0版本到14.10.0版本存在授权问题漏洞,该漏洞源于授权不正确。远程攻击者利用该漏洞可以绕过授权检测访问作业的跟踪日志。
CVSS Information
N/A
Vulnerability Type
N/A