Beveiligingsadvies

CVE-2020-13299

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-09-14 18:36:52
Laatst bijgewerkt 2024-08-04 12:11:19
Toegewezen door GitLab
CVSS-score 8.1
Status PUBLISHED

Beschrijving

A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. The revocation feature was not revoking all session tokens and one could re-use it to obtain a valid session.