Loading HuntDB...

GHSA-chxc-x49q-7m83

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An issue has been discovered in Ultimate-licensed GitLab EE affecting all versions starting 13.12 prior to 16.2.8, 16.3.0 prior to 16.3.5, and 16.4.0 prior to 16.4.1 that could allow an attacker to impersonate users in CI pipelines through direct transfer group imports.

Related CVEs

Key Information

GHSA ID
GHSA-chxc-x49q-7m83
Published
October 2, 2023 12:30 PM
Last Modified
October 3, 2024 9:30 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 16, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.