CVE-2020-13305 PUBLISHED

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was not invalidating project invitation link upon removing a user from a project.

EPSS 0.18% · 39.1th percentile

Risk Scores

EPSS Score
0.18%
39.1th percentile

Affected Products

VendorProductVersions
Bitnamigitlab13.3.0, 13.3.0, 1.0.0
Bitnamigitlab13.2.0, 13.3.0, 1.0.0

Timeline

References

Open in Interactive Console →