VDB

CVE-2023-1098

CVE-2023-1098 PUBLISHED CVSS 4.900000095367432 MEDIUM

An information disclosure vulnerability has been discovered in GitLab EE/CE affecting all versions starting from 11.5 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1 will allow an admin to leak password from repository mirror configuration.

EPSS 0.94% · 59.6th percentile

Risk Scores

CVSS 3.1
4.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.94%
59.6th percentile

Affected Products

VendorProductVersions
Bitnamigitlab11.5.0, 15.9.0, 15.10.0
Bitnamigitlab11.5.0, 15.9.0, 15.10.0

Timeline

  • Mar 30, 2023 CVE Published
  • Apr 6, 2023 EPSS Score
  • May 15, 2023 EPSS Score
  • Jun 22, 2023 EPSS Score
  • Jul 31, 2023 EPSS Score
  • Sep 7, 2023 EPSS Score
  • Oct 16, 2023 EPSS Score
  • Nov 23, 2023 EPSS Score
  • Jan 1, 2024 EPSS Score
  • Feb 8, 2024 EPSS Score
  • Mar 18, 2024 EPSS Score
  • Apr 25, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›