CVE-2024-0199
Last modified
CVE-2024-0199 is a high-severity vulnerability rated 8/10 on the CVSS scale. An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to 16.8.4, and 16.8.3 prior to 16.9.2. An attacker could bypass CODEOWNERS by utilizing a crafted payload in an old feature branch to perform malicious actions.. EPSS estimates a 0.71% chance of exploitation in the next 30 days.
Description
An authorization bypass vulnerability was discovered in GitLab affecting versions 11.3 prior to 16.7.7, 16.7.6 prior to 16.8.4, and 16.8.3 prior to 16.9.2. An attacker could bypass CODEOWNERS by utilizing a crafted payload in an old feature branch to perform malicious actions.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Gitlab | Gitlab | >= 11.3, < 16.7.7 |
| Gitlab | Gitlab | >= 16.8.0, < 16.8.4 |
| Gitlab | Gitlab | >= 16.9.0, < 16.9.2 |
References
- https://gitlab.com/gitlab-org/gitlab/-/issues/436977Exploit, Issue Tracking
- https://hackerone.com/reports/2295423Permissions Required
- https://gitlab.com/gitlab-org/gitlab/-/issues/436977Exploit, Issue Tracking
- https://hackerone.com/reports/2295423Permissions Required
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-0199?
How severe is CVE-2024-0199?
How do I fix CVE-2024-0199?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-0193A use-after-free flaw was found in the netfilter subsystem o…6.7
- CVE-2024-0194A vulnerability, which was classified as critical, has been …9.8
- CVE-2024-0195A vulnerability, which was classified as critical, was found…9.8
- CVE-2024-0196A vulnerability has been found in Magic-Api up to 2.0.1 and …8.8
- CVE-2024-0197A flaw in the installer for Thales SafeNet Sentinel HASP LDK…7.8
- CVE-2024-0198Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2024-0200An unsafe reflection vulnerability was identified in GitHub …9.8
- CVE-2024-0201The Product Expiry for WooCommerce plugin for WordPress is v…4.3
- CVE-2024-0202A security vulnerability has been identified in the cryptlib…5.9
- CVE-2024-0203The Digits plugin for WordPress is vulnerable to Cross-Site …8.8
- CVE-2024-0204Authentication bypass in Fortra's GoAnywhere MFT prior to 7.…9.8
- CVE-2024-0206 A symbolic link manipulation vulnerability in Trellix Anti-…7.8
Are you affected by CVE-2024-0199?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
