VDB
CVE-2022-4143
CVE-2022-4143
PUBLISHED
CVSS 5.300000190734863 MEDIUM
An issue has been discovered in GitLab affecting all versions starting from 15.7 before 15.8.5, from 15.9 before 15.9.4, and from 15.10 before 15.10.1 that allows for crafted, unapproved MRs to be introduced and merged without authorization
EPSS 0.76% · 53.7th percentile
Risk Scores
CVSS 3.1
5.300000190734863
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N
EPSS Score
0.76%
53.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 15.7.0, 15.10.0, 15.9.0 |
| Bitnami | gitlab | 15.7.0, 15.9.0, 15.10.0 |
Timeline
- Jul 1, 2022 CVE Published
- Jun 28, 2023 CVE Updated
- Jun 29, 2023 EPSS Score
- Aug 4, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 14, 2023 EPSS Score
- Nov 19, 2023 EPSS Score
- Dec 24, 2023 EPSS Score
- Jan 29, 2024 EPSS Score
- Mar 5, 2024 EPSS Score
- Apr 10, 2024 EPSS Score
- May 15, 2024 EPSS Score