Vulnerability CVE-2023-3979


Published: 2023-09-29

Description:
An issue has been discovered in GitLab affecting all versions starting from 10.6 before 16.2.8, all versions starting from 16.3 before 16.3.5, all versions starting from 16.4 before 16.4.1. It was possible that upstream members to collaborate with you on your branch get permission to write to the merge request??s source branch.

 References:
https://hackerone.com/reports/2082560
https://gitlab.com/gitlab-org/gitlab/-/issues/419972

Copyright 2026, cxsecurity.com

 

Back to Top