Total vulnerabilities in the database
GitLab 12.8.x before 12.8.6, when sign-up is enabled, allows remote attackers to bypass email domain restrictions within the two-day grace period for an unconfirmed email address.
Software | From | Fixed in |
---|---|---|
gitlab / gitlab | 12.8.0 | 12.8.6 |