Description


An issue has been discovered in GitLab EE affecting all versions starting from 13.10 before 15.0.5, all versions starting from 15.1 before 15.1.4, all versions starting from 15.2 before 15.2.1. GitLab's Jira integration has an insecure direct object reference vulnerability that may be exploited by an attacker to leak Jira issues.

Related CPE's


a

gitlab

gitlab

3

Weaknesses



CWE-639

CVSS impact metrics


CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N

3.5 · Low

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2022-08-05T14:15:12.200Z

3 years ago

Last modified

2024-11-21T06:01:07.363Z

1 year ago