CVE Published: 28/03/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: hackerone |
Vendor: n/a |
Product: GitLab Community Edition and GitLab Enterprise Edition 8.7.0 through 8.15.7, 8.16.0 through 8.16.7, 8.17.0 through 8.17.3 Status : PUBLISHED
CVE-2017-0882 Description
Multiple versions of GitLab expose sensitive user credentials when assigning a user to an issue or merge request. A fix was included in versions 8.15.8, 8.16.7, and 8.17.4, which were released on March 20th 2017 at 23:59 UTC.