Related Vulnerabilities: CVE-2022-2512  

Membership changes are not reflected in TODO for confidential notes, allowing a former project members to read updates via TODOs

Severity Medium

Remote Yes

Type Unknown

Description

Membership changes are not reflected in TODO for confidential notes, allowing a former project members to read updates via TODOs

AVG-2785 gitlab 15.2.0-1 15.2.1-1 Medium Vulnerable