NA

CVE-2022-4289

Published: 09/03/2023 Updated: 14/05/2024
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue has been discovered in GitLab affecting all versions starting from 15.3 prior to 15.7.8, versions of 15.8 prior to 15.8.4, and version 15.9 prior to 15.9.2. Google IAP details in Prometheus integration were not hidden, could be leaked from instance, group, or project settings to other users.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab