Security Advisory

CVE-2022-1963

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-07-01 17:00:05
Last updated 2024-08-03 00:24:43
Assigner GitLab
CVSS score 5.3
State PUBLISHED

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.4 before 14.10.5, all versions starting from 15.0 before 15.0.4, all versions starting from 15.1 before 15.1.1. GitLab reveals if a user has enabled two-factor authentication on their account in the HTML source, to unauthenticated users.