In all versions of GitLab CE/EE since version 11.10, an admin of a group can see the SCIM token of that group by visiting a specific endpoint.
2021-11-05T00:15:10.760
2024-11-21T06:20:30.777
Modified
CVSSv3.1: 2.7 (LOW)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | gitlab | gitlab | < 14.2.6 | Yes |
| Application | gitlab | gitlab | < 14.2.6 | Yes |
| Application | gitlab | gitlab | < 14.3.4 | Yes |
| Application | gitlab | gitlab | < 14.3.4 | Yes |
| Application | gitlab | gitlab | 14.4.0 | Yes |
| Application | gitlab | gitlab | 14.4.0 | Yes |