Loading HuntDB...

GHSA-4m8h-w9w3-cp2v

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A Cross Site Request Forgery issue has been discovered in GitLab CE/EE affecting all versions before 15.6.7, all versions starting from 15.7 before 15.7.6, and all versions starting from 15.8 before 15.8.1. An attacker could take over a project if an Owner or Maintainer uploads a file to a malicious project.

Related CVEs

Key Information

GHSA ID
GHSA-4m8h-w9w3-cp2v
Published
February 14, 2023 12:30 AM
Last Modified
February 27, 2023 3:30 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 16, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.