CVE-2023-3907
17.12.2023, 23:15
A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4, and 16.6 prior to 16.6.2 allows a project Maintainer to use a Project Access Token to escalate their role to OwnerEnginsight
Vendor | Product | Version |
---|---|---|
gitlab | gitlab | 16.0.0 ≤ 𝑥 < 16.4.4 |
gitlab | gitlab | 16.5 ≤ 𝑥 < 16.5.4 |
gitlab | gitlab | 16.6 ≤ 𝑥 < 16.6.2 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration