mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 09:12:08 +00:00
806 B
806 B
CVE-2019-15731
Description
An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Non-members were able to comment on merge requests despite the repository being set to allow only project members to do so.
POC
Reference
- https://about.gitlab.com/2019/08/29/security-release-gitlab-12-dot-2-dot-3-released/
- https://about.gitlab.com/2019/08/29/security-release-gitlab-12-dot-2-dot-3-released/
Github
No PoCs found on GitHub currently.