GHSA-xxx4-cx36-38r5
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
Lack of email address ownership verification in the CODEOWNERS feature in all versions of GitLab EE since version 11.3 allows an attacker to bypass CODEOWNERS Merge Request approval requirement under rare circumstances
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: August 4, 2025 6:39 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.