An information disclosure vulnerability in GitLab CE/EE in project/group exports affecting all versions from 15.4 prior to 17.0.5, 17.1 prior to 17.1.3, and 17.2 prior to 17.2.1 allows unauthorized users to view the resultant export.
https://gitlab.com/gitlab-org/gitlab/-/issues/437894
Source: Mitre, NVD
Published: 2024-07-24
Updated: 2024-07-25
Base Score: 2.1
Vector: CVSS2#AV:N/AC:H/Au:S/C:P/I:N/A:N
Severity: Low
Base Score: 2.6
Vector: CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N