Loading HuntDB...

GHSA-4rmw-pmhj-w226

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. GitLab was not revoking current user sessions when 2 factor authentication was activated allowing a malicious user to maintain their access.

Related CVEs

Key Information

GHSA ID
GHSA-4rmw-pmhj-w226
Published
May 24, 2022 5:28 PM
Last Modified
May 24, 2022 5:28 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 4, 2025 6:39 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.