CyberRota Analysis
AI-GeneratedGitLab is vulnerable across multiple versions, where an authenticated user with a Maintainer role can exploit improper authorization in a project's API endpoint to modify protected branch configurations. This could lead to unauthorized changes in critical project settings, potentially impacting code integrity and security. Organizations using affected versions of GitLab should prioritize remediation to mitigate risks associated with this vulnerability.
Original NVD Description
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed an authenticated user with Maintainer role to modify protected branch configuration due to improper authorization in a projects API endpoint.
Related CVEs
Other vulnerabilities affecting the same vendor(s)