VDB
CVE-2023-4379
CVE-2023-4379
PUBLISHED
An issue has been discovered in GitLab EE affecting all versions starting from 15.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1. Code owner approval was not removed from merge requests when the target branch was updated.
EPSS 0.01% · 2.5th percentile
Risk Scores
EPSS Score
0.01%
2.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 15.3.0, 16.3.0, 16.4.0 |
| Bitnami | gitlab | 15.3.0, 16.3.0, 16.4.0 |
Exploit Intelligence
- GitLab Issue #408359 (circl)
- HackerOne Bug Bounty Report #1947211 (circl)
Timeline
- Sep 28, 2023 CVE Published
- Nov 10, 2023 EPSS Score
- Dec 10, 2023 EPSS Score
- Jan 10, 2024 EPSS Score
- Feb 9, 2024 EPSS Score
- Mar 11, 2024 EPSS Score
- Apr 10, 2024 EPSS Score
- May 10, 2024 EPSS Score
- Jun 10, 2024 EPSS Score
- Jul 10, 2024 EPSS Score
- Aug 9, 2024 EPSS Score
- Sep 9, 2024 EPSS Score