User Email Information Leakage in GitLab Webhook Payload

User Email Information Leakage in GitLab Webhook Payload

CVE-2022-4255 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

An info leak issue was identified in all versions of GitLab EE from 13.7 prior to 15.4.6, 15.5 prior to 15.5.5, and 15.6 prior to 15.6.1 which exposes user email id through webhook payload.

Learn more about our Web App Pen Testing.