VDB
CVE-2024-7296
CVE-2024-7296
PUBLISHED
An issue was discovered in GitLab EE affecting all versions from 16.5 prior to 17.7.7, 17.8 prior to 17.8.5, and 17.9 prior to 17.9.2 which allowed a user with a custom permission to approve pending membership requests beyond the maximum number of allowed users.
EPSS 0.02% · 6.9th percentile
Risk Scores
EPSS Score
0.02%
6.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | gitlab | 16.5.0 |
| Bitnami | gitlab | 16.5.0 |
Timeline
- Jan 21, 1970 Security Advisory
- Mar 12, 2025 CVE Published
- Mar 14, 2025 EPSS Score
- Mar 26, 2025 Coalition ESS Score
- Mar 27, 2025 EPSS Score
- Apr 10, 2025 EPSS Score
- Apr 23, 2025 EPSS Score
- May 7, 2025 EPSS Score
- May 20, 2025 EPSS Score
- Jun 3, 2025 EPSS Score
- Jun 16, 2025 EPSS Score
- Jun 30, 2025 EPSS Score