Total vulnerabilities in the database
User is allowed to set an email as a notification email even without verifying the new email in all previous GitLab CE/EE versions through 13.0.1
Software | From | Fixed in |
---|---|---|
gitlab / gitlab | 12.10.0 | 12.10.7 |
gitlab / gitlab | - | 12.9.8 |
gitlab / gitlab | 13.0.0 | 13.0.0.x |