← Back

CVE-2024-5005

nvd nist
Published: Oct 11, 2024Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 11.4 before 17.2.9, all versions starting from 17.3 before 17.3.5, all versions starting from 17.4 before 17.4.2 It was possible for guest users to disclose project templates using the API.

Affected (6)

Products: Gitlab: Gitlab
1 product
Gitlab
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Gitlab
From 11.4.0 to 17.2.9
From 17.3.0 to 17.3.5
From 17.4.0 to 17.4.2
From 11.4.0 to 17.2.9
From 17.3.0 to 17.3.5
From 17.4.0 to 17.4.2

References (2)

Source: cve@gitlab.com
ExploitIssue Tracking
Source: cve@gitlab.com
Permissions Required

Timeline

No history available yet.