Description
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that could have allowed a user to use invalidated or incorrectly scoped credentials to access Virtual Registries under certain conditions.
CVSS 5.4EPSS 0.163%Risk 0.55
View source- Published
- 2026-04-22 17:16:44
- Affected versions
- >=18.2, <18.9.6, <18.10.4, <18.11.1
- Type
- Installed app
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N