Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-91187
HistoryNov 01, 2021 - 12:00 a.m.

GitLab Access Control Error Vulnerability (CNVD-2021-91187)

2021-11-0100:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.001 Low

EPSS

Percentile

22.7%

GitLab is a self-hosted, Git (version control system) project repository application developed using Ruby on Rails by GitLab, Inc. The application can be used to access a project’s file content, commit history, bug list, etc. An access control error vulnerability exists in GitLab CE/EE, which stems from an improper access control flaw that exposes the private email addresses of issue and merge request transferees to Webhook data consumers. No detailed vulnerability details are currently available.

CPENameOperatorVersion
gitlab gitlab ce/eege13.9

0.001 Low

EPSS

Percentile

22.7%