CVE-2024-12303 | GitLab Community Edition/Enterprise Edition up to 18.0.5/18.1.3/18.2.1 privileges assignment (Issue 508298 / Nessus ID 260063)
A vulnerability described as problematic has been identified in GitLab Community Edition and Enterprise Edition up to 18.0.5/18.1.3/18.2.1. This impacts an unknown function. The manipulation results in incorrect privilege assignment.
This vulnerability is known as CVE-2024-12303. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.