An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 11.4 before 17.2.9, all versions starting from 17.3 before 17.3.5, all versions starting from 17.4 before 17.4.2 It was possible for guest users to disclose project templates using the API.
The code does not function according to its published specifications, potentially leading to incorrect usage.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gitlab | Ubuntu | esm-apps/xenial | * |