Security Advisory

CVE-2017-0914

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-03-21 20:00:00
Last updated 2024-08-05 13:25:16
Assigner hackerone
CVSS score not scored
State PUBLISHED

Description

Gitlab Community and Enterprise Editions version 10.1, 10.2, and 10.2.4 are vulnerable to a SQL injection in the MilestoneFinder component resulting in disclosure of all data in a GitLab instance's database.