CVE-2020-13300
EUVD-2020-556014.09.2020, 19:15
GitLab CE/EE version 13.3 prior to 13.3.4 was vulnerable to an OAuth authorization scope change without user consent in the middle of the authorization flow.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gitlab | gitlab | 13.3.0 ≤ 𝑥 < 13.3.4 |
| gitlab | gitlab | 13.3.0 ≤ 𝑥 < 13.3.4 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References