Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Angeline Lee

#30839of 53,630
8.5Total CVSS
Vulnerabilities · 1
PT-2023-5678
8.5
2023-09-28
Gitlab · Gitlab Ce/Ee · CVE-2023-4379
**Name of the Vulnerable Software and Affected Versions** GitLab EE versions 15.3 through 16.2.7 GitLab EE versions 16.3 through 16.3.4 GitLab EE versions 16.4 through 16.4.0 **Description** An issue has been discovered in GitLab EE related to insufficient access control. The issue allows a remote attacker to bypass code owner approval by changing the target branch of a merge request. **Recommendations** For GitLab EE versions 15.3 through 16.2.7, update to version 16.2.8 or later. For GitLab EE versions 16.3 through 16.3.4, update to version 16.3.5 or later. For GitLab EE versions 16.4 through 16.4.0, update to version 16.4.1 or later.