GitLab CVE-2023-7028 CVE-2023-5356

GitLab Arbitrary User Password Reset Vulnerability

janeiro 13, 2024

Overview Recently, NSFOCUS CERT detected that GitLab officially released a security announcement and fixed multiple security vulnerabilities in GitLab Community Edition (CE) and Enterprise Edition (EE), including two serious vulnerabilities. Affected users should take protective measures as soon as possible. CVE-2023-7028: In GitLab CE/EE, users can reset their passwords through the auxiliary email address. Due […]

Search

Inscreva-se no Blog da NSFOCUS