PT-2020-13483 · Gitlab · Gitlab

Published

2020-10-07

·

Updated

2024-03-06

·

CVE-2020-13342

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions GitLab versions prior to 13.2.10 GitLab versions prior to 13.3.7 GitLab versions prior to 13.4.2
Description The issue is related to the lack of rate limiting when re-sending confirmation emails.
Recommendations For versions prior to 13.2.10, update to version 13.2.10 or later. For versions prior to 13.3.7, update to version 13.3.7 or later. For versions prior to 13.4.2, update to version 13.4.2 or later.

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

BIT-GITLAB-2020-13342
CVE-2020-13342

Affected Products

Gitlab