Loading HuntDB...

GHSA-wpgv-98gg-67q7

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated users to include information from local files into the metadata of a Git repository via the web interface.

Related CVEs

Key Information

GHSA ID
GHSA-wpgv-98gg-67q7
Published
May 5, 2022 12:29 AM
Last Modified
May 5, 2022 12:29 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: August 2, 2025 6:46 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.