Loading HuntDB...

GHSA-rvj3-54w6-vrw6

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A permission check vulnerability in GitLab CE/EE affecting all versions starting from 8.12 prior to 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2 allowed for LFS tokens to read and write to the user owned repositories.

Related CVEs

Key Information

GHSA ID
GHSA-rvj3-54w6-vrw6
Published
August 8, 2024 12:30 PM
Last Modified
August 8, 2024 12:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 15, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.