Description


In all versions of GitLab CE/EE since version 8.0, when an admin uses the impersonate feature twice and stops impersonating, the admin may be logged in as the second user they impersonated, which may lead to repudiation issues.

Related CPE's


a

gitlab

gitlab

6

Weaknesses



NVD-CWE-noinfo

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

3.8 · Low

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2021-10-04T15:15:08.303Z

4 years ago

Last modified

2024-11-21T05:20:30.010Z

1 year ago