VDB

CVE-2023-1621

CVE-2023-1621 PUBLISHED CVSS 6.5 MEDIUM

An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions starting from 15.11 before 15.11.1. A malicious group member may continue to commit to projects even from a restricted IP address.

EPSS 0.87% · 56.5th percentile

Risk Scores

CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
EPSS Score
0.87%
56.5th percentile

Affected Products

VendorProductVersions
Bitnamigitlab15.11.0, 12.0.0
Bitnamigitlab12.0.0, 15.11.0

Timeline

  • May 2, 2023 CVE Published
  • Jun 7, 2023 EPSS Score
  • Aug 18, 2023 EPSS Score
  • Oct 29, 2023 EPSS Score
  • Jan 9, 2024 EPSS Score
  • Feb 14, 2024 EPSS Score
  • Apr 27, 2024 EPSS Score
  • Jul 8, 2024 EPSS Score
  • Sep 18, 2024 EPSS Score
  • Nov 29, 2024 EPSS Score
  • Feb 10, 2025 EPSS Score
  • Mar 19, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›