312
VMScore

CVE-2022-1124

Published: 11/05/2022 Updated: 18/05/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions before 14.8.6, all versions from 14.9.0 before 14.9.4, and 14.10.0, allowing Guest project members to access trace log of jobs when it is enabled

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab 14.10.0

gitlab gitlab

Vendor Advisories

An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 1486, all versions from 1490 prior to 1494, and 14100, allowing Guest project members to access trace log of jobs when it is enabled ...