Improper access control in GitLab CE/EE affecting all versions starting from 8.12 prior to 14.8.6, all versions starting from 14.9 prior to 14.9.4, and all versions starting from 14.10 prior to 14.10.1 allows non-project members to access contents of Project Members-only Wikis via malicious CI jobs
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gitlab gitlab 14.10.0 |
||
gitlab gitlab |