CVE-2021-39897
05.11.2021, 00:15
Improper access control in GitLab CE/EE version 10.5 and above allowed subgroup members with inherited access to a project from a parent group to still have access even after the subgroup is transferredEnginsight
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 12.9.0 ≤ 𝑥 < 12.9.8 |
gitlab | gitlab | 12.9.0 ≤ 𝑥 < 12.9.8 |
gitlab | gitlab | 12.10.0 ≤ 𝑥 < 12.10.7 |
gitlab | gitlab | 12.10.0 ≤ 𝑥 < 12.10.7 |
gitlab | gitlab | 13.0.0 |
gitlab | gitlab | 13.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References