VYPR
Medium severity5.3NVD Advisory· Published Jul 21, 2023· Updated Jun 17, 2026

CVE-2023-3102

CVE-2023-3102

Description

A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16.0.6, all versions starting from 16.1 before 16.1.1, which allows access to titles of private issue and MR.

Affected products

5
  • GitLab Inc./GitLabv53 versions
    cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:*range: 16.0
    • cpe:2.3:a:gitlab:gitlab:*:*:*:*:enterprise:*:*:*range: >=16.0.0,<16.0.6
    • cpe:2.3:a:gitlab:gitlab:16.1.0:*:*:*:enterprise:*:*:*
  • Range: starts from 16.0 before 16.0.6, starts from 16.1 before 16.1.1
  • osv-coords
    Range: >= 16.0.0, < 16.0.6

Patches

Vulnerability mechanics

References

2

News mentions

1