Sensitive User Credential Exposure in Multiple Versions of GitLab

Sensitive User Credential Exposure in Multiple Versions of GitLab

CVE-2017-0882 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:N/A:N

Multiple versions of GitLab expose sensitive user credentials when assigning a user to an issue or merge request. A fix was included in versions 8.15.8, 8.16.7, and 8.17.4, which were released on March 20th 2017 at 23:59 UTC.

Learn more about our User Device Pen Test.