GHSA-gc5m-gc6j-fr9q
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Sessions keys are stored in plain-text in Redis which allows attacker with Redis access to authenticate as any user that has a session stored in Redis
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 17, 2025 6:25 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.