User email verification bypass in GitLab CE/EE 12.5 and later through 13.0.1 allows user to bypass email verification
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gitlab | Gitlab | 12.5.0 (including) | 12.9.8 (excluding) |
Gitlab | Gitlab | 12.10.0 (including) | 12.10.7 (excluding) |
Gitlab | Gitlab | 13.0.0 (including) | 13.0.0 (including) |