Loading HuntDB...

GHSA-7x52-3x7c-gwj6

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

An issue has been discovered in GitLab EE affecting all versions starting from 16.8 before 16.8.2. When a user is assigned a custom role with manage_group_access_tokens permission, they may be able to create group access tokens with Owner privileges, which may lead to privilege escalation.

Related CVEs

Key Information

GHSA ID
GHSA-7x52-3x7c-gwj6
Published
February 12, 2024 9:30 PM
Last Modified
February 12, 2024 9:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 16, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.