VDB

ANCHORE-2024-7296

ANCHORE-2024-7296 PUBLISHED

An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior to 17.8.5, and 17.9 prior to 17.9.2 which allowed a user with a custom permission to approve pending membership requests beyond the maximum number of allowed users.

Affected Products

VendorProductVersions
GitLabGitLab Enterprise17.8, 17.9, 16.5

Timeline

  • Mar 13, 2025 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›