VDB

BIT-gitlab-2020-13298

BIT-gitlab-2020-13298 PUBLISHED CVSS 5.800000190734863 MEDIUM

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. Conan package upload functionality was not properly validating the supplied parameters, which resulted in the limited files disclosure.

Risk Scores

CVSS v3.1
5.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

Affected Products

VendorProductVersions
Bitnamigitlab13.1.0, 13.2.0, 13.3.0

Timeline

  • Mar 6, 2024 CVE Published
  • Apr 3, 2025 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›