CVE Published: 21/03/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: hackerone |
Vendor: GitLab |
Product: GitLab Community and Enterprise Editions Status : PUBLISHED
CVE-2017-0914 Description
Gitlab Community and Enterprise Editions version 10.1, 10.2, and 10.2.4 are vulnerable to a SQL injection in the MilestoneFinder component resulting in disclosure of all data in a GitLab instance\'s database.