Input validation error in Gitlab Community Edition - CVE-2020-13308
Published: September 15, 2020 / Updated: September 21, 2020
Gitlab Community Edition
GitLab, Inc
Description
The vulnerability allows a remote privileged user to perform service disruption.
A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. A user without 2 factor authentication enabled could be prohibited from accessing GitLab by being invited into a project that had 2 factor authentication inheritance.