CVE-2022-0371
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.4 before 14.5.4, all versions starting from 14.6 before 14.6.4, all versions starting from 14.7 before 14.7.1. GitLab search may allow authenticated users to search other users by their respective private emails even if a user set their email to private.
Se ha detectado un problema en GitLab CE/EE afectando a todas las versiones a partir de la 11.4 anteriores a 14.5.4, todas las versiones a partir de la 14.6 anteriores a 14.6.4, todas las versiones a partir de la 14.7 anteriores a 14.7.1. La búsqueda de GitLab puede permitir a usuarios autenticados buscar a otros usuarios por sus respectivos correos electrónicos privados, incluso si un usuario ha configurado su correo electrónico como privado
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-01-26 CVE Reserved
- 2022-03-28 CVE Published
- 2023-10-19 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://gitlab.com/gitlab-org/gitlab/-/issues/350476 | Broken Link |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-0371.json | 2022-04-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 11.4 < 14.5.4 Search vendor "Gitlab" for product "Gitlab" and version " >= 11.4 < 14.5.4" | community |
Affected
| ||||||
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 11.4 < 14.5.4 Search vendor "Gitlab" for product "Gitlab" and version " >= 11.4 < 14.5.4" | enterprise |
Affected
| ||||||
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 14.6 < 14.6.4 Search vendor "Gitlab" for product "Gitlab" and version " >= 14.6 < 14.6.4" | community |
Affected
| ||||||
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 14.6 < 14.6.4 Search vendor "Gitlab" for product "Gitlab" and version " >= 14.6 < 14.6.4" | enterprise |
Affected
| ||||||
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 14.7 < 14.7.1 Search vendor "Gitlab" for product "Gitlab" and version " >= 14.7 < 14.7.1" | community |
Affected
| ||||||
Gitlab Search vendor "Gitlab" | Gitlab Search vendor "Gitlab" for product "Gitlab" | >= 14.7 < 14.7.1 Search vendor "Gitlab" for product "Gitlab" and version " >= 14.7 < 14.7.1" | enterprise |
Affected
|