An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permission check allows attacker with developer role to perform various deletions.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: GitLab

Published: 2020-10-12T13:20:07

Updated: 2020-10-12T13:20:07

Reserved: 2020-05-21T00:00:00


Link: CVE-2020-13341

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-10-12T14:15:12.090

Modified: 2021-07-21T11:39:23.747


Link: CVE-2020-13341

JSON object: View

cve-icon Redhat Information

No data.

CWE