QID 376605
Date Published: 2022-05-18
QID 376605: GitLab Multiple Security Vulnerabilities (gitlab- 14.8.6, 14.9.4, 14.10.1)
GitLab, the software, is a web-based Git repository manager with wiki and issue tracking features.
Affected Version:
All versions prior to 14.8.6
All versions from 14.9 prior to 14.9.4
All versions from 14.10 prior to 14.10.1
QID Detection Logic:(Authenticated)
It fires gitlab-rake gitlab:env:info command to check vulnerable version of GitLab.
Successful exploitation of these vulnerabilities may affect the Confidentiality, Integrity and Availability of the targeted user.
Solution
The vendor has released patch, For more information please visit GitLab advisory
Vendor References
CVEs related to QID 376605
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Gitlab-Advisory |
|