Notre sélection d'alertes et avis SSI.
Sources : US Cert, Cert EU, Cert FR, Cnil, VulDB.

mardi 15 septembre 2020

GitLab up to 13.1.9/13.2.7/13.3.3 OAuth Endpoint Parameter Brute Force weak authentication

A vulnerability was found in GitLab up to 13.1.9/13.2.7/13.3.3 (Bug Tracking Software). It has been rated as problematic. This issue affects an unknown functionality of the component OAuth Endpoint. Upgrading to version 13.1.10, 13.2.8 or 13.3.4 eliminates this vulnerability.

Lien vers l'article source

Auteur: VulDB

Catégories: VulDBNombre de vues: 81

x

Événements SSI