CVE-2023-3363
CVSS 3.1 Score 3.8 of 10 (low)
Details
Published Jul 13, 2023
Updated: Jul 20, 2023
CWE ID 532
Summary
CVE-2023-3363: A significant information disclosure vulnerability was identified in GitLab CE/EE. Affecting versions 13.6 to 15.11.10, 16.0 to 16.0.6, and 16.1 to 16.1.1, this issue caused Sidekiq logs to reveal webhook tokens when the log format was set to 'default'. This disclosure posed a potential security risk, making it essential for affected users to apply the necessary patches promptly.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- GitLab
Affected Vendors
- GitLab Inc.