Security Advisory

CVE-2024-8116

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-16 04:31:08
Last updated 2024-12-16 16:44:50
Assigner GitLab
State PUBLISHED

Description

An issue has been discovered in GitLab CE/EE affecting all versions from 16.9 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. By using a specific GraphQL query, under specific conditions an unauthorized user can retrieve branch names.