Back

MEDIUM

Incorrect Authorization in GitLab

Published Jul 13, 2023

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 before 15.11.10, all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1. This allowed a developer to remove the CODEOWNERS rules and merge to a protected branch.

Affected products

Remediation

Vendor solution

Upgrade to versions 15.11.10, 16.0.6, 16.1.1 or above.

References (3)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner GitLab
Published Jul 13, 2023
Updated Oct 30, 2024
Reserved May 8, 2023

CISA Vulnrichment

Updated Oct 30, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner GitLab
Published Jul 13, 2023
Updated Oct 30, 2024

GitHub

No data