Unrated severityNVD Advisory· Published Jan 17, 2023· Updated Apr 4, 2025
CVE-2022-2907
CVE-2022-2907
Description
An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 15.1.6, all versions starting from 15.2 before 15.2.4, all versions starting from 15.3 before 15.3.2. It was possible to read repository content by an unauthorised user if a project member used a crafted link.
Affected products
3- Range: >=12.9 <15.1.6, >=15.2 <15.2.4, >=15.3 <15.3.2
- Range: >=12.9, <15.1.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.