Description
In all versions of GitLab CE/EE since version 8.0, when an admin uses the impersonate feature twice and stops impersonating, the admin may be logged in as the second user they impersonated, which may lead to repudiation issues.
Related CPE's
a
gitlab
gitlab
6
References
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N
3.8 · Low
Information
Source identifier
Vulnerability status
Modified
Published
2021-10-04T15:15:08.303Z
4 years agoLast modified
2024-11-21T05:20:30.010Z
1 year ago