BIT-gitlab-2020-13313 PUBLISHED CVSS 4.300000190734863 MEDIUM

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. An unauthorized project maintainer could edit the subgroup badges due to the lack of authorization control.

Risk Scores

CVSS v3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Affected Products

VendorProductVersions
Bitnamigitlab1.0.0, 13.2.0, 13.3.0

Timeline

References

Open in Interactive Console →