Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Angeline Lee

#32686de 56,337
8.5CVSS total
Vulnerabilidades · 1
PT-2023-5678
8.5
2023-09-28
Gitlab · Gitlab Ce/Ee · CVE-2023-4379
**Name of the Vulnerable Software and Affected Versions** GitLab EE versions 15.3 through 16.2.7 GitLab EE versions 16.3 through 16.3.4 GitLab EE versions 16.4 through 16.4.0 **Description** An issue has been discovered in GitLab EE related to insufficient access control. The issue allows a remote attacker to bypass code owner approval by changing the target branch of a merge request. **Recommendations** For GitLab EE versions 15.3 through 16.2.7, update to version 16.2.8 or later. For GitLab EE versions 16.3 through 16.3.4, update to version 16.3.5 or later. For GitLab EE versions 16.4 through 16.4.0, update to version 16.4.1 or later.