CVE-2023-5831 PUBLISHED

An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.0 before 16.3.6, all versions starting from 16.4 before 16.4.2, and all versions starting from 16.5.0 before 16.5.1 which have the `super_sidebar_logged_out` feature flag enabled. Affected versions with this default-disabled feature flag enabled may unintentionally disclose GitLab version metadata to unauthorized actors.

EPSS 0.08% · 22.7th percentile

Risk Scores

EPSS Score
0.08%
22.7th percentile

Affected Products

VendorProductVersions
Bitnamigitlab16.0.0, 16.4.0, 16.5.0
Bitnamigitlab16.0.0, 16.4.0, 16.5.0

Timeline

References

Open in Interactive Console →