Back to search

CVE-2017-11438

MEDIUM
6.3NVD

GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an authenticated user with the ability to create a group to add themselves to any project that is inside a subgroup.

CVSS v3.0 Score

6.3
/ 10.0
MEDIUM
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Information

Published
2 août 2017
Updated
20 avr. 2025
Status
Deferred
Source
cve@mitre.org

Affected products

gitlab gitlab
Versions : 9.0.0, 9.0.1, 9.0.2, 9.0.3, 9.0.4

Weaknesses (CWE)

CWE-269

Similar CVEs

Other vulnerabilities of type CWE-269

Loading…

Monitor your products

Get automatic alerts for every new CVE affecting your equipment.

Enable monitoring