CVE-2022-2512 Information

Description

An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 before 15.0.5 all versions starting from 15.1 before 15.1.4 all versions starting from 15.2 before 15.2.1. Membership changes are not reflected in TODO for confidential notes allowing a former project members to read updates via TODOs.

Reference

https://gitlab.com/gitlab-org/gitlab/-/issues/365742 https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-2512.json

Share on: