NA

CVE-2023-5207

Published: 30/09/2023 Updated: 04/10/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A vulnerability exists in GitLab CE and EE affecting all versions starting 16.0 before 16.2.8, 16.3 before 16.3.5, and 16.4 before 16.4.1. An authenticated attacker could perform arbitrary pipeline execution under the context of another user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab

gitlab gitlab 16.4.0

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: A vulnerability was discovered in GitLab CE and EE affecting all versions starting 160 prior to 1628, 163 prior to 1635, and 164 prior to 1641 An authenticated attacker could perform arbitrary pipeline execution under the context of another user ...