BIT-gitlab-2024-1347

Import Source
https://github.com/bitnami/vulndb/tree/main/data/gitlab/BIT-gitlab-2024-1347.json
Aliases
Published
2024-04-27T07:22:08.128Z
Modified
2024-04-27T08:11:47.988661Z
Details

An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.6, all versions starting from 16.10 before 16.10.4, all versions starting from 16.11 before 16.11.1. Under certain conditions, an attacker through a crafted email address may be able to bypass domain based restrictions on an instance or a group.

References

Affected packages

Bitnami / gitlab

Package

Name
gitlab

Affected ranges

Type
SEMVER
Events
Introduced
0.0.0
Fixed
16.9.6
Introduced
16.10.0
Fixed
16.10.4
Introduced
16.11.0
Fixed
16.11.1