7.7
CVSSv3

CVE-2024-0410

Published: 22/02/2024 Updated: 04/03/2024
CVSS v3 Base Score: 7.7 | Impact Score: 5.8 | Exploitability Score: 1.3
VMScore: 0

Vulnerability Summary

An authorization bypass vulnerability exists in GitLab affecting versions 15.1 before 16.7.6, 16.8 before 16.8.3, and 16.9 before 16.9.1. A developer could bypass CODEOWNERS approvals by creating a merge conflict.

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab 16.9.0

gitlab gitlab