CVE-2020-13349
17.11.2020, 19:15
An issue has been discovered in GitLab EE affecting all versions starting from 8.12. A regular expression related to a file path resulted in the Advanced Search feature susceptible to catastrophic backtracking. Affected versions are >=8.12, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.Enginsight
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 8.12.0 ≤ 𝑥 < 13.3.9 |
gitlab | gitlab | 13.4.0 ≤ 𝑥 < 13.4.5 |
gitlab | gitlab | 13.5.0 ≤ 𝑥 < 13.5.2 |
𝑥
= Vulnerable software versions