Vulnerability CVE-2023-0120


Published: 2023-09-01

Description:
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 16.1.5, all versions starting from 16.2 before 16.2.5, all versions starting from 16.3 before 16.3.1. Due to improper permission validation it was possible to edit labels description by an unauthorised user.

 References:
https://gitlab.com/gitlab-org/gitlab/-/issues/387531
https://hackerone.com/reports/1818425

Copyright 2026, cxsecurity.com

 

Back to Top