Back

LOW

Insertion of Sensitive Information into Log File in GitLab

Published Jul 13, 2023

Description

An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to 16.1.1, resulted in the Sidekiq log including webhook tokens when the log format was set to `default`.

Affected products

Remediation

Vendor solution

Upgrade to versions 15.11.10, 16.0.6, 16.1.1 or above.

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitLab
Published Jul 13, 2023
Updated Nov 5, 2024
Reserved Jun 22, 2023
CISA Vulnrichment
Updated Nov 5, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a