CVE-2023-5356

Incorrect authorization checks in GitLab CE/EE from all versions starting from 8.13 before 16.5.6, all versions starting from 16.6 before 16.6.4, all versions starting from 16.7 before 16.7.2, allows a user to abuse slack/mattermost integrations to execute slash commands as another user.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2024-01-12 14:15

Updated : 2024-01-12 15:54


NVD link : CVE-2023-5356

Mitre link : CVE-2023-5356


JSON object : View

Products Affected

No product.

CWE

No CWE.