A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. An unauthorized project maintainer could edit the subgroup badges due to the lack of authorization control.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: GitLab

Published: 2020-09-14T19:40:20

Updated: 2020-09-14T19:40:20

Reserved: 2020-05-21T00:00:00


Link: CVE-2020-13313

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-09-14T20:15:11.140

Modified: 2020-09-16T16:12:21.473


Link: CVE-2020-13313

JSON object: View

cve-icon Redhat Information

No data.

CWE