CVE-2020-13342 — Allocation of Resources Without Limits or Throttling in Gitlab
Severity
2.7LOWNVD
EPSS
0.1%
top 67.77%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 7
Latest updateMay 24
Description
An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:LExploitability: 1.2 | Impact: 1.4
Affected Packages4 packages
🔴Vulnerability Details
2📋Vendor Advisories
2GitLab▶
CVE-2020-13342: An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email↗2020-10-07
Debian▶
CVE-2020-13342: gitlab - An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3...↗2020