VDB
CVE-2023-1098
CVE-2023-1098
PUBLISHED
CVSS 4.900000095367432 MEDIUM
An information disclosure vulnerability has been discovered in GitLab EE/CE affecting all versions starting from 11.5 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1 will allow an admin to leak password from repository mirror configuration.
EPSS 0.94% · 59.6th percentile
Risk Scores
CVSS 3.1
4.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.94%
59.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 11.5.0, 15.9.0, 15.10.0 |
| Bitnami | gitlab | 11.5.0, 15.9.0, 15.10.0 |
Timeline
- Mar 30, 2023 CVE Published
- Apr 6, 2023 EPSS Score
- May 15, 2023 EPSS Score
- Jun 22, 2023 EPSS Score
- Jul 31, 2023 EPSS Score
- Sep 7, 2023 EPSS Score
- Oct 16, 2023 EPSS Score
- Nov 23, 2023 EPSS Score
- Jan 1, 2024 EPSS Score
- Feb 8, 2024 EPSS Score
- Mar 18, 2024 EPSS Score
- Apr 25, 2024 EPSS Score