GitLab Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Servers - Other Servers
Multiple vulnerabilities were identified in GitLab, a remote attacker could exploit some of these vulnerabilities to trigger cross site scripting, denial of service condition, security restriction bypass and sensitive information disclosure on the targeted system.
Impact
- Cross-Site Scripting
- Denial of Service
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
Please refer to the Related Links section for detail.
Solutions
Before installation of the software, please visit the software vendor web-site for more details.
The vendor has issued a fix:
Update to 12.9.1 / 12.8.8 / 12.7.8. [GitLab Community Edition (CE) and Enterprise Edition (EE).]
Vulnerability Identifier
Source
Related Link
Share with