← Back to CVE List

CVE-2024-3115

Published: 2024-06-27T00:15Z
Last Modified: 2024-11-21T09:28Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 16.11.5, starting from 17.0 prior to 17.0.3, and starting from 17.1 prior to 17.1.1, which allows an attacker to access issues and epics without having an SSO session using Duo Chat. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt