6.5
CVSSv3

CVE-2024-1066

Published: 07/02/2024 Updated: 04/03/2024
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue has been discovered in GitLab EE affecting all versions from 13.3.0 before 16.6.7, 16.7 before 16.7.5, and 16.8 before 16.8.2 which allows an malicious user to do a resource exhaustion using GraphQL `vulnerabilitiesCountByDay`

Vulnerable Product Search on Vulmon Subscribe to Product

gitlab gitlab