An improper access control issue in GitLab CE/EE affecting all versions starting before 15.1.6, all versions from 15.2 before 15.2.4, all versions from 15.3 before 15.3.2 allows disclosure of pipeline status to unauthorized users.
2022-10-17T16:15:21.947
2025-05-13T17:15:49.167
Modified
CVSSv3.1: 4.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | gitlab | gitlab | < 15.1.6 | Yes |
| Application | gitlab | gitlab | < 15.1.6 | Yes |
| Application | gitlab | gitlab | < 15.2.4 | Yes |
| Application | gitlab | gitlab | < 15.2.4 | Yes |
| Application | gitlab | gitlab | < 15.3.2 | Yes |
| Application | gitlab | gitlab | < 15.3.2 | Yes |